From d1559d4dee0dbc3f022835cc4a865f2639f2eeab Mon Sep 17 00:00:00 2001 From: Kouhai Date: Sat, 13 Jan 2024 14:09:23 -0800 Subject: [PATCH] th: renamed to TH_DEACTIVATE_AUTHED_THROTTLES + TH_DEACTIVATE_UNAUTHED_API_THROTTLES --- config/initializers/rack_attack.rb | 14 +++++++++----- 1 file changed, 9 insertions(+), 5 deletions(-) diff --git a/config/initializers/rack_attack.rb b/config/initializers/rack_attack.rb index 33205190f1..ec0f56c583 100644 --- a/config/initializers/rack_attack.rb +++ b/config/initializers/rack_attack.rb @@ -66,7 +66,7 @@ class Rack::Attack IpBlock.blocked?(req.remote_ip) end - if !!ENV['TH_DEACTIVATE_AUTHED_API_THROTTLES'] + if !!ENV['TH_DEACTIVATE_AUTHED_THROTTLES'] throttle('throttle_authenticated_api', limit: 1_500, period: 5.minutes) do |req| req.authenticated_user_id if req.api_request? end @@ -76,8 +76,10 @@ class Rack::Attack end end - throttle('throttle_unauthenticated_api', limit: 300, period: 5.minutes) do |req| - req.throttleable_remote_ip if req.api_request? && req.unauthenticated? + if !!ENV['TH_DEACTIVATE_UNAUTHED_API_THROTTLES'] + throttle('throttle_unauthenticated_api', limit: 300, period: 5.minutes) do |req| + req.throttleable_remote_ip if req.api_request? && req.unauthenticated? + end end throttle('throttle_api_media', limit: 30, period: 30.minutes) do |req| @@ -92,8 +94,10 @@ class Rack::Attack req.throttleable_remote_ip if req.post? && req.path == '/api/v1/accounts' end - throttle('throttle_authenticated_paging', limit: 300, period: 15.minutes) do |req| - req.authenticated_user_id if req.paging_request? + if !!ENV['TH_DEACTIVATE_AUTHED_THROTTLES'] + throttle('throttle_authenticated_paging', limit: 300, period: 15.minutes) do |req| + req.authenticated_user_id if req.paging_request? + end end throttle('throttle_unauthenticated_paging', limit: 300, period: 15.minutes) do |req|