Password-Control Login-Attempt - HP 6125XLG Command Reference Manual

Blade switch security command reference
Table of Contents

Advertisement

Examples
# Set the maximum account idle time to 30 days.
<Sysname> system-view
[Sysname] password-control login idle-time 30
Related commands
display password-control

password-control login-attempt

Use password-control login-attempt to specify the maximum number of consecutive failed login attempts
and the action to be taken when a user fails to log in after the specified number of attempts.
Use undo password-control login-attempt to restore the default.
Syntax
password-control login-attempt login-times [ exceed { lock | lock-time time | unlock } ]
undo password-control login-attempt
Default
The maximum number of consecutive failed login attempts is 3 and a user failing to log in after the
specified number of attempts must wait for 1 minute before trying again.
Views
System view
Predefined user roles
network-admin
Parameters
login-times: Specifies the maximum number of consecutive failed login attempts, in the range of 2 to 10.
exceed: Specifies the action to be taken when a user fails to log in after the specified number of attempts.
lock: Permanently prohibits a user who fails to log in after the specified number of attempts from logging
in.
lock-time time: Forces a user who fails to log in after the specified number of attempts to wait for a period
of time before trying again. The time argument is in the range of 1 to 360 minutes.
unlock: Allows a user who fails to log in after the specified number of attempts to continue trying to log
in.
Usage guidelines
If an FTP or virtual terminal line (VTY) user fails authentication, the system adds the user to a password
control blacklist. If a user fails to provide the correct password after the specified number of consecutive
attempts, the system takes one of the following actions:
If prohibited permanently, a user can log in only after you remove the username from the password
control blacklist by using the reset password-control blacklist command.
If prohibited temporarily, a user can log in again after the lock time elapses or after you remove the
username from the password control blacklist by using the reset password-control blacklist
command.
137

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents