Opened 3 years ago

Last modified 7 months ago

#2671 new task

Spam submissions to GeoforAll lab form

Reported by: vrautenbach Owned by: vicky@…
Priority: critical Milestone: Unplanned
Component: WebSite Keywords:
Cc:

Description

Over the last hour, there has been more than 600 lab submissions (submissions are coming in per minute) via the form on the website. These are all spam, seems to be a bot. Are you able to assist in either blocking the bot or shutting down the form temporarily?

Thank you in advance.

Change History (4)

comment:1 by vrautenbach, 3 years ago

I had a look at the settings and adjusted the max entries setting. This has stopped the current attack. But the form is now temporarily closed, which is OK for a short period.

I would appreciate any advise or help to resolve this.

Last edited 3 years ago by vrautenbach (previous) (diff)

comment:2 by robe, 3 years ago

At a glance it doesn't look like we have any anti-spam tools in place for forms.

We should review which ones would work best and have acceptable licensing terms for us. There are at a glance over 10.

  1. Gravity Forms Zero spam: https://www.osgeo.org/wp-admin/plugin-install.php?tab=plugin-information&plugin=gravity-forms-zero-spam

Doesn't have that many reviews but does have many installations and since we are using Gravity Forms for our forms, might play well with what we have.

  1. Akismet Spam Protection - https://www.osgeo.org/wp-admin/plugin-install.php?tab=plugin-information&plugin=akismet - many installations and I think used by more than wordpress. Not sure how well it plays with gravity Forms

Several more - https://www.osgeo.org/wp-admin/plugin-install.php?s=spam%20form&tab=search&type=term

but some are tied to a different form plugin so won't work for us or more of a firewall feature.

comment:3 by cvvergara, 22 months ago

Maybe only people with ldap account can access the form

comment:4 by cvvergara, 7 months ago

This is comment is a test for discourse

Note: See TracTickets for help on using tickets.