Hi,
we're currently evaluating SOS as it is exactly what we're looking for

. However makeing the VSS database accessible from the web (no VPN available at the moment) is quite a security risk. So I was wondering if there's some feature that prevents the server from being brute force attacked considering user/passwords. Is there some kind of account lockout after n-invalid logins or something like that?
Regards,
Alex