about summary refs log tree commit diff
path: root/config
diff options
context:
space:
mode:
authormultiple creatures <dev@multiple-creature.party>2019-08-04 02:24:03 -0500
committermultiple creatures <dev@multiple-creature.party>2019-08-04 02:24:03 -0500
commit9ba20817205de7bf46489ab2a0d834f798031d20 (patch)
tree0476c9422a8f0328bf977991ca82123999901adf /config
parent4e3d546f6110e0a80500a52b9f96f465018fe5e2 (diff)
allow more media proxy requests when logged in
Diffstat (limited to 'config')
-rw-r--r--config/initializers/rack_attack.rb8
1 files changed, 6 insertions, 2 deletions
diff --git a/config/initializers/rack_attack.rb b/config/initializers/rack_attack.rb
index 24ba16ae3..d1450b97d 100644
--- a/config/initializers/rack_attack.rb
+++ b/config/initializers/rack_attack.rb
@@ -65,8 +65,12 @@ class Rack::Attack
     req.authenticated_user_id if req.post? && req.path.start_with?('/api/v1/media')
   end
 
-  throttle('throttle_media_proxy', limit: 30, period: 30.minutes) do |req|
-    req.remote_ip if req.path.start_with?('/media_proxy')
+  throttle('throttle_authenticated_media_proxy', limit: 100, period: 5.minutes) do |req|
+    req.authenticated_user_id if req.path.start_with?('/media_proxy')
+  end
+
+  throttle('throttle_unauthenticated_media_proxy', limit: 30, period: 30.minutes) do |req|
+    req.remote_ip if req.unauthenticated? && req.path.start_with?('/media_proxy')
   end
 
   throttle('throttle_api_sign_up', limit: 5, period: 30.minutes) do |req|