User Login Control; Password Not Displayed In Any Form; Logging - HP MSR Series Configuration Manual

Hpe flexnetwork msr router series
Hide thumbs Also See for MSR Series:
Table of Contents

Advertisement

Current login passwords of device management users are not stored in the password history,
because a device management user password is saved in cipher text and cannot be recovered to a
plaintext password.

User login control

First login
With the global password control feature enabled, users must change the password at first login
before they can access the system. In this situation, password changes are not subject to the
minimum change interval.
Login attempt limit
Limiting the number of consecutive login failures can effectively prevent password guessing.
Login attempt limit takes effect on FTP and VTY users. It does not take effect on the following types
of users:
Nonexistent users (users not configured on the device).
Users logging in to the device through console or AUX ports.
If a user fails to log in, the system adds the user account and the user's IP address to the password
control blacklist. After making the maximum number of consecutive attempts, login attempt limit
limits the user and user account in any of the following ways:
Disables the user account until the account is manually removed from the password control
blacklist.
Allows the user to continue using the user account. The user's IP address and user account are
removed from the password control blacklist when the user uses this account to successfully
log in to the device.
Disables the user account for a period of time.
The user can use the account to log in when either of the following conditions exists:
The locking timer expires.
The account is manually removed from the password control blacklist before the locking
timer expires.
NOTE:
This account is locked only for this user. Other users can still use this account, and the blacklisted
user can use other user accounts.
Maximum account idle time
You can set the maximum account idle time for user accounts. When an account is idle for this period
of time since the last successful login, the account becomes invalid.

Password not displayed in any form

For security purposes, nothing is displayed when a user enters a password.

Logging

The system logs all successful password changing events and user adding events to the password
control blacklist.
227

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents