aaa authentication attempts lockout max-fail <failure_count>

Prev Next

Sets the maximum permitted consecutive authentication failures before an account is locked out.

Note

This command only applies to the admin user account. It does not apply to other user accounts with administrative privileges.

Syntax

[no] aaa authentication attempts lockout max-fail <failure_count>

Parameters

no

Use the no form of this command to disable locking out users based on consecutive authentication failures.

failure_count

Maximum number of failed attempts.

Example

The following locks an account after 3 failed login attempts:

hostname (config) # aaa authentication attempts lockout max-fail 3

The following disables account lockouts based on failed attempts:

hostname (config) # no aaa authentication attempts lockout max-fail

User role

Admin

Command mode

Config

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Malware Analysis: Before release 6.4

  • Central Management System: 7.1

  • Email Security — Server: Before release 6.4

  • File Protect: Before release 6.4

  • Endpoint Security (HX): 2.5

  • Network Security: Before release 6.4

  • Intelligent Virtual Execution - Server: 7.9