Configuring The Account Lockout Policy; Configuring The Account Lockout Policy Using The Console - Netscape DIRECTORY SERVER 6.01 - ADMINISTRATOR Administrator's Manual

Table of Contents

Advertisement

For information on creating and modifying directory entries, see Chapter 2,
"Creating Directory Entries." For information on inactivating user accounts, refer
to"Inactivating Users and Roles," on page 266.
You can also use the Users and Groups area of the Netscape Administration Server
or the Directory Server Gateway to set or reset user passwords. For information on
how to use the Users and Groups area, see the online help that is available in the
Netscape Administration Server. For information on how to use the Gateway to
create or modify directory entries, see the online help that is available in the
Gateway.

Configuring the Account Lockout Policy

The lockout policy works in conjunction with the password policy to provide
further security. The account lockout feature protects against hackers who try to
break into the directory by repeatedly trying to guess a user's password. You can
set up your password policy so that a specific user is locked out of the directory
after a given number of failed attempts to bind.
Configuring the account lockout policy is described in the following sections:
"Configuring the Account Lockout Policy Using the Console," on page 263
"Configuring the Account Lockout Policy Using the Command Line," on
page 264

Configuring the Account Lockout Policy Using the Console

To set up or modify the account lockout policy for your Directory Server:
On the Directory Server Console, select the Configuration tab and then the
1.
Data node.
Select the Account Lockout tab in the right pane.
2.
To enable account lockout, select the "Accounts may be locked out" checkbox.
3.
Enter the maximum number of allowed bind failures in the "Lockout account
4.
after X login failures" text box. The server locks out users who exceed the limit
you specify here.
Enter the number of minutes you want the server to wait before resetting the
5.
bind failure counter to 0 in the "Reset failure counter after X minutes" text box.
Managing the Password Policy
Chapter 7
User Account Management
263

Advertisement

Table of Contents
loading

This manual is also suitable for:

Directory server 6.01

Table of Contents