Hi everyone,
We are using the DNN Community Edition and the default DNN login functionality. We need to add some custom logic during the login process to implement IP blocking (for example, blocking an IP after multiple failed login attempts within a specific time period).
However, since we are using the precompiled DNN installation, we do not have access to files such as Login.ascx.cs or any other login code-behind files where the authentication logic is implemented.
Could someone please suggest the recommended approach for adding custom code to the default login process?
Specifically:
Where is the default login authentication logic located in the Community Edition? What is the recommended way to hook into the login process without modifying the DNN core? Should this be implemented using a custom Authentication Provider, HttpModule, or another extension point?
Any guidance or examples would be greatly appreciated.
Thank you!
I believe you can block users coming from an ip address within DNN. I'm not sure this is only for the login process or for the complete site access. It's under the security settings > Authentication > Login IP-Filters
The recommended pattern for this would be to create your own custom Authentication Provider, that way you can inject any additional logic that you desire, and then you can turn off the default DNN Authentication Provider. There is a REALLY old bit of documentation here - https://www.dnnsoftware.c...hentication-provider but there are also some other examples online, or you can reference the built-in code as a guide.
These Forums are for the discussion of the open source CMS DNN platform and ecosystem.
For the benefit of the community and to protect the integrity of the ecosystem, please observe the following posting guidelines:
Awesome! Simply post in the forums using the link below and we'll get you started.