Got it

How do I change the maximum number of login failures and lockout duration?

Created: Apr 24, 2020 07:00:31Latest reply: Apr 24, 2020 07:00:48 369 1 0 0 0
  Rewarded HiCoins: 0 (problem resolved)

Hello,

How can I change the number of login failures and lockout duration if the USG6350 is locked due to multiple login attempts?

please help me thanks!


Featured Answers
jason_hu
Admin Created Apr 24, 2020 07:00:48

Hello,

If the function of locking the administrator account upon authentication failure is enabled, the administrator account is locked when the number of authentication failures reaches the value of this parameter. In this case, the administrator account is not allowed to log in to the system within a period of time. The function of locking the administrator account does not take effect for the system administrator admin or the administrator who logs in through the console port. After the administrator account is locked, the account fails to be used to log in to the system even if the IP address is changed or the account is used to log in to the system in other modes (except the console port mode). The account is automatically unlocked after the locking time expires. By default, the account is locked for 30 minutes after three consecutive login failures. To change the password, perform the following steps:

[NGFW] aaa
[NGFW-aaa] lock-authentication enable
[NGFW-aaa] lock-authentication failed-count 3
[NGFW-aaa] lock-authentication timeout 30

Glad to help you! Any further questions, let us know.


View more
  • x
  • convention:

All Answers

Hello,

If the function of locking the administrator account upon authentication failure is enabled, the administrator account is locked when the number of authentication failures reaches the value of this parameter. In this case, the administrator account is not allowed to log in to the system within a period of time. The function of locking the administrator account does not take effect for the system administrator admin or the administrator who logs in through the console port. After the administrator account is locked, the account fails to be used to log in to the system even if the IP address is changed or the account is used to log in to the system in other modes (except the console port mode). The account is automatically unlocked after the locking time expires. By default, the account is locked for 30 minutes after three consecutive login failures. To change the password, perform the following steps:

[NGFW] aaa
[NGFW-aaa] lock-authentication enable
[NGFW-aaa] lock-authentication failed-count 3
[NGFW-aaa] lock-authentication timeout 30

Glad to help you! Any further questions, let us know.


View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.