Question
Clayton Barbier · Mar 15, 2021

Invalid login limit

Hello,

How long is a given account locked out after 5 unsuccessful logon attempts, if the invalid login limit parameter is set to 5?

Invalid login limit (0-64) — Specifies the maximum number of successive unsuccessful login attempts. After this limit is reached, either the account is disabled or an escalating time delay is imposed on each attempt; the action depends on the value of the Disable account if login limit reached field. A value of 0 (zero) means that there is no limit to the number of invalid logins. [Default is 5]
Product version: Ensemble 2018.1
00
2 0 6 107
Log in or sign up to continue

Replies

Do you mean if the "disable account if login limit reached" box is checked? In that case, it's disabled until you re-enable it.

If that checkbox is not checked - does it do anything after 5 successive failed attempts, if 5 is set for invalid logon limit only.

If the disable checkbox is not checked, it will start delaying the response about whether or not the login succeeded after there have been too many attempts.

Thank you for your response, Katherine - If it's set to 5 for example, how long is the delay after 5 failed logon attempts before it allows another attempt?

I don't remember the exact number, but it starts off as a few seconds and gets longer for each try after the limit of 5.  It can get up to minutes or hours if you keep trying incorrect logins, and then will reset to nothing after login succeeds.  Do you need the exact number for something?

It's for an internal organization app compliance assessment - was trying to determine how long in minutes would a given user account be locked out for after the configured number of failed logon attempts.