Security Update

bryan
Forum Intermediate
Posts: 966
Joined: Mon Jun 20, 2005 7:57 pm

Security Update

quite a simple addition i would think... anyway

IF an account is logged into by a new ip, ie, one that has not been used on that account, that person can bank, and train troops as miners only. No other stats, info, attacks can be done. no resources can be sold or given away. No passwords can be changed, or anything. The account is basically locked down.

When the account is logged into again by the original IP that made the account, an option appears in top of your command Center. This options stats that your account has been logged into by a different computer, and gives you the chance to give that ip "full access" to your account, or to block it from log-in again. this would prevent the majority of hackings/crackings/password findings into Stargatewars.

Only problem i can see if someone loses internet, and has to move onto a new ISP to get the net back. however, the person would be able to bank or whatever, and be able to email forum for new access.

this would provide a relatively simple technique to stop all the problems of hacking accounts. it gives someone to ability bank away from home as well.
Bryan wrote:shoot first, fire missiles second. if anything left, drop a nuke
Genlucky wrote:Opinions are like **Filtered**. everyone has one, and some are bigger than others
buck wrote:i am infact the proverbial nutcase
RepliMagni
Forum Addict
Posts: 4158
Joined: Wed Apr 20, 2005 9:29 am
Alliance: Loner :P
Race: NanoTiMaster
ID: 1908448

Re: Security Update

bryan wrote:Only problem i can see if someone loses internet, and has to move onto a new ISP to get the net back. however, the person would be able to bank or whatever, and be able to email forum for new access.


That is the real problem....or even if you go home for a month, but you used to log in with your uni IP....you have to wait a month of just banking until going back to uni...

And yes, forum could do those things but....he can also let people trade with the same IP...hands up all the people that have actually got a response? :lol:

Its probably easier to let forum deal with it as and when it happens....would probably give him less work to do, and be easier to reset someone's account to a certain date. :wink:
Image
Munchy
Forum Expert
Posts: 1408
Joined: Sat Apr 01, 2006 8:54 pm
Alliance: Tauri Alliance
ID: 60881

Some people have IP's that change constantly, everytime they acess the internet.. This would kind of screw them over :wink:
Image

ID=60881
bryan
Forum Intermediate
Posts: 966
Joined: Mon Jun 20, 2005 7:57 pm

use an ip range ;)


maybe a shut off/ turn on switch would work
Bryan wrote:shoot first, fire missiles second. if anything left, drop a nuke
Genlucky wrote:Opinions are like **Filtered**. everyone has one, and some are bigger than others
buck wrote:i am infact the proverbial nutcase
RobinInDaHood
Forum Elite
Posts: 1509
Joined: Wed Oct 25, 2006 3:39 am
Race: Vulpes
ID: 75697
Location: Da Hood, of course

Or do what I do:

Simply use a 48 character long password composed of Latin, Cyrillic, and Egyptian Coptic character sets mixed with decimal numbers, extended control characters, and financial symbols from at least three different countries.

:D
Zeratul
Elder Administrator
Posts: 23203
Joined: Sat May 06, 2006 8:44 am
Alliance: Lucian Alliance
Race: Templar
ID: 7
Alternate name(s): Hrefna
Reitha
Location: Nivlheim

Honours and Awards

:lol:

must be hard to type in...
Image
Image
"Great holy armies shall be gathered and trained to fight all who embrace evil. In the name of the gods, Browsers shall be changed to carry the internet out amongst the peoples and we will spread Firefox to all the unbelievers. The power of the Firefox will be felt far and wide and the wicked users of IE shall be converted to use the true browsers."

Curious about our color? Feel free to ask...
Kikaz
For the Lulz
Posts: 6607
Joined: Mon Jan 23, 2006 8:54 pm
Alliance: Jötunheim
Race: Lulz
ID: 3471
Alternate name(s): Misery
Location: California, USA
Contact:

Munchy wrote:Some people have IP's that change constantly, everytime they acess the internet.. This would kind of screw them over :wink:


I had that might still do. :shock:
Image
Quotes
Meanwhile in MaYHeM
Duderanch wrote:And so it would come to pass, in December of 2012 the war between the ponies and the pandas broke out..it lasted 21 days, the result? Armagedon.
Noobert wrote:Kikaz scares me at times, and he's in my own alliance.
Dr. House wrote:I HAVE THE POWER! The power to warn, and I will **Filtered** use it too.
Kateaclysmic wrote: I thought you loved me, Kikaz. I'm getting an abortion.
Sarevok wrote:
Kikaz wrote:Ridiculous.
Congrats on the most constructive post ever...
Affirmation wrote: And Speaking of bad boys (the baddest)... Kikaz is right, Q is a family, and Affy is the love child of Kikaz and Kateaclysmic!! That is right... I am NOT AN ABORTION... but she never nursed me and Kikaz stopped being a terrible father figure to Affy years ago... Family - HA... Affy's old arse...[-X

Where is the love Kikaz??? WHERE IS THE LOVE (Dad... :smt047 ) ??? [-(
I creep though shadows
I rise up at night
I live just inside you
And give you a terrible fright
I walk through the darkness
I lurk under your bed
I live in your wardrobe
I creep up in the shed.
I tiptoe through the corridor
I follow you anywhere
I rip your braveness apart
And never ever care
I am fear so don't come near..
2007 Quantum Player of the Year Runner-up - 2011 Villian of the Year - 2012 Hall of Fame - 2012 Quantum Player of the Year Runner-up - Leader and Co-founder of the 2014 Alliance of the Year
User avatar
El TC
Forum Irregular
Posts: 285
Joined: Wed Mar 01, 2006 7:49 am
ID: 0

RobinInDaHood wrote:Or do what I do:

Simply use a 48 character long password composed of Latin, Cyrillic, and Egyptian Coptic character sets mixed with decimal numbers, extended control characters, and financial symbols from at least three different countries.

:D


Hahaha

thanxs for the laugh, funniest thing I read today.
User avatar
SG
Forum Irregular
Posts: 274
Joined: Tue Jun 13, 2006 10:54 am
Race: Replicator
ID: 41408

Dynamic assigned IP's blow your idea mostly out of the water. What happens when the bank is full?

Since you said nothing affecting stats could be done except training miners .. They can use the naq to train miners, great idea!


Since the bank is full and you have money and no where to put it besides miners ..

Guess you get the idea.

Having a range of IPs can help, but it still leaves a window for other players that either live near you or use the same ISP.


A better feature would be to allow accounts to be 'optionally' locked to an IP range(s). Since it is toggable, people can turn it off while leaving town or something and still log in else where. Then when they are back where they usually are, they can have it on.
    Image
    User avatar
    Bazsy
    The Elder Admin
    Posts: 3131
    Joined: Fri Sep 23, 2005 4:18 am
    Alliance: -
    Race: -
    ID: 0
    Location: Stockholm, Sweden

    Honours and Awards

    Just make it that way, that all new ips have to be activated by repliing an email...
    Image
    User avatar
    El TC
    Forum Irregular
    Posts: 285
    Joined: Wed Mar 01, 2006 7:49 am
    ID: 0

    As Robin said (although massively exaggerating ) :D , a decent password is basically all you need.
    bryan
    Forum Intermediate
    Posts: 966
    Joined: Mon Jun 20, 2005 7:57 pm

    really? i changed mine only a week ago, and it seems someone still got in.... and it wasnt just a word either.
    Bryan wrote:shoot first, fire missiles second. if anything left, drop a nuke
    Genlucky wrote:Opinions are like **Filtered**. everyone has one, and some are bigger than others
    buck wrote:i am infact the proverbial nutcase
    Zeratul
    Elder Administrator
    Posts: 23203
    Joined: Sat May 06, 2006 8:44 am
    Alliance: Lucian Alliance
    Race: Templar
    ID: 7
    Alternate name(s): Hrefna
    Reitha
    Location: Nivlheim

    Honours and Awards

    maybe they have some kind of way that they can monitor someone for the kind of "package" that contains password changes? and then fish out the new password from that "package"?

    might that be why it happened now?
    Image
    Image
    "Great holy armies shall be gathered and trained to fight all who embrace evil. In the name of the gods, Browsers shall be changed to carry the internet out amongst the peoples and we will spread Firefox to all the unbelievers. The power of the Firefox will be felt far and wide and the wicked users of IE shall be converted to use the true browsers."

    Curious about our color? Feel free to ask...
    User avatar
    SG
    Forum Irregular
    Posts: 274
    Joined: Tue Jun 13, 2006 10:54 am
    Race: Replicator
    ID: 41408

    Zeratul wrote:maybe they have some kind of way that they can monitor someone for the kind of "package" that contains password changes? and then fish out the new password from that "package"?

    might that be why it happened now?


    While doable not worth the effort to ruin someone's game account. This is after all just a game ...
      Image
      User avatar
      El TC
      Forum Irregular
      Posts: 285
      Joined: Wed Mar 01, 2006 7:49 am
      ID: 0

      yeah, I agree.

      There are allot of other game sites out there, sgw clones, they look legit, they work legit and have all the bells and whistles and have the same setup to login as sgw. Now they are setup to get your password and email since some players don't bother to change it.

      The IP idea is interesting though complicated to code I guess, a simpler solution would be a login log file which displays the last 10 logged in IP's to your account. If that is too much trouble, one could have a small display on top which simply states: You last logged in at this time with this IP."
      Locked

      Return to “Suggestions Archive”