Changes

Password Policy

25 bytes added, 16:56, 1 May 2014
no edit summary
* ''Once an account has been locked for exceeding the number of permitted login attempts it will remain on the "locked users" list until the correct password is entered. This allows the administrator to see which users have been unable to log in, even if the configured lockout duration has passed and the account is no longer technically locked.''
* ''When an account has been locked for exceeding the alloted allotted number of attempts, after the lockout time has passed they are permitted only one attempt at the correct password. A single incorrect password at this point will re-lock the account for the configured lockout duration. In other words, once someone is on the "locked user" list they are only permitted a single wrong attempt and they will be locked for the lockout duration again. This prevents would-be intruders from having multiple attempts to guess the password each time the lockout duration has passed. ''
==Intruder Email Alert==
* '''Body''' – the body of the alert email. See below for the variables that you can use in the body.
'''Intruder Alert Email Variables''' – because the [[User|user]] in is not logged into the system , the amount of information available is limited to IP Address '''@ip@''', the attempted username '''@username@''' and time '''@time@'''of the attempted login.
==Intruder Log==
8,849
edits