Thanks Anthony. You are right but even this method is not working and even by using that auth directive I get all results.
We need this feature. right now what we did to prevent malicious queries is using a timeout limit in alpha servers and also setting a request size and response size limit to prevent crawling our data.
2 Likes