Raise failed authentication log entry to warning #3713
Labels
type/enhancement
An improvement of existing functionality
type/proposal
The new feature has not been accepted yet but needs to be discussed first.
Description
Currently failed authentication attempts are logged as info into gitea.log.
All executed SQL queries are also logged as info into xorm.log which means increases file size and disk writes.
In order to avoid the size and write problem I have increased log level to warn, but that leaves my fail2ban without the required log lines.
Alternatively add an option to disable the xorm log, or log executed SQL queries as debug, which should be better for production servers with several active users.
As an aside it would be nice to have a log of failed password reset requests .
The text was updated successfully, but these errors were encountered: