From 5b60b604c4167b30286a6e033723a6b274e8452d Mon Sep 17 00:00:00 2001 From: Arne_ Date: Sun, 12 Feb 2023 21:06:25 +0100 Subject: [PATCH] [9.x] Adds clarification to throttle auth setting (#6096) * adds clarification to throttle auth setting * Update auth.php --------- Co-authored-by: Taylor Otwell --- config/auth.php | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/config/auth.php b/config/auth.php index d8c6cee7c..d83996ade 100644 --- a/config/auth.php +++ b/config/auth.php @@ -84,6 +84,10 @@ return [ | considered valid. This security feature keeps tokens short-lived so | they have less time to be guessed. You may change this as needed. | + | The throttle setting is the number of seconds a user must wait before + | generating more password reset tokens. This prevents the user from + | quickly generating a very large amount of password reset tokens. + | */ 'passwords' => [