Sets the maximum permitted consecutive authentication failures before an account is locked out.
Note
This command only applies to the admin user account. It does not apply to other user accounts with administrative privileges.
Syntax
[no] aaa authentication attempts lockout max-fail <failure_count>
Parameters
no
Use the no form of this command to disable locking out users based on consecutive authentication failures.
failure_count
Maximum number of failed attempts.
Example
The following locks an account after 3 failed login attempts:
hostname (config) # aaa authentication attempts lockout max-fail 3
The following disables account lockouts based on failed attempts:
hostname (config) # no aaa authentication attempts lockout max-fail
User role
Admin
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Malware Analysis: Before release 6.4
Central Management System: 7.1
Email Security — Server: Before release 6.4
File Protect: Before release 6.4
Endpoint Security (HX): 2.5
Network Security: Before release 6.4
Intelligent Virtual Execution - Server: 7.9