Author: computerskillz » Sat Jul 01, 2006 7:57 pm
Very very good question!
Something I doubt has been thought of.
I was thinking about a modification that asks a user if this will be their primary logon location (the computer they're logging in from, a.k.a a Computer Account) and then set the IP of that computer as the "main" IP for that user. A user can also configure one or more computer accounts: one for home, one for work, one for the library, etc)
Such that if the user logs on from another computer other than the main "computer account" IP, the user is then prompted for their security answer.
This prevents user accounts from being compromised by unauthorized users who may have access to a user account but not located at one of the configured "Computer Accounts" of the user. The admin can set the # of allowable "Computer Accounts" per user or per site. Logons from the second computer account will block logon attempts from the other computer accounts and so on and so on.
And to prevent authorized users from passing along their security credentials to other users, such as by selling a paid-subscription account, the modification can allow access from only one computer account at a time per logon. So that the same logon account can't be loged on from two different computers at the same time and/or within a configurable time frame.
etc
I think this would definitely help in the event of a user passing along paid priviledges and possibly making money by purchasing one paid account and then selling it to multiple people, as well as prevent potential hacks of one or more accounts.
VERY good question! I'll post this as a mod request on phpBB to see if maybe somebody will work on it.
Last edited by computerskillz on Wed Dec 31, 1969 5:00 pm, edited 1 time in total.
testing apostrophe''s in the singature''''s