29.04.2019 Views

OS6860(E)_AOS_8.1.1.R01_Switch_Management_Guide

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Configuring Global User Lockout Settings<br />

Managing <strong>Switch</strong> User Accounts<br />

By default, the lockout threshold number is set to 0; this means that there is no limit to the number of<br />

failed login attempts allowed, even if a lockout window time period exists. To configure a lockout threshold<br />

number, use the user lockout-threshold command. For example:<br />

-> user lockout-threshold 3<br />

Note that a locked user account is automatically unlocked when the lockout duration time (see “Configuring<br />

the User Lockout Duration Time” on page 6-14) is reached or the admin user manually unlocks the<br />

user account.<br />

Configuring the User Lockout Duration Time<br />

The user lockout duration time specifies the number of minutes a user account remains locked until it is<br />

automatically unlocked by the switch. This period of time starts when the user account is locked out of the<br />

switch. Note that at any point during the lockout duration time, the admin user can still manually unlock<br />

the user account.<br />

By default, the user lockout duration time is set to 0; this means that there is no automatic unlocking of a<br />

user account by the switch. The locked user account remains locked until it is manually unlocked by the<br />

admin user. To configure a lockout duration time, use the user lockout-duration command. For example:<br />

-> user lockout-duration 60<br />

Do not configure a lockout duration time that is less than the lockout window time period (see “Configuring<br />

the User Lockout Window” on page 6-13).<br />

Manually Locking and Unlocking User Accounts<br />

The user lockout unlock command is used to manually lock or unlock a user account. This command is<br />

only available to the admin user or a user who has read/write access privileges to the switch.<br />

To lock a user account, enter user lockout and the username for the account. For example,<br />

-> user j_smith lockout<br />

To unlock a user account, enter user unlock and the username for the locked account. For example,<br />

-> user j_smith unlock<br />

In addition to this command, the admin user or users with read/write access privileges can change the user<br />

account password to unlock the account.<br />

Note that if a lockout duration time (see “Configuring the User Lockout Duration Time” on page 6-14) is<br />

not configured for the switch, then it is only possible to manually unlock a user account with the user<br />

lockout command or by changing the user password.<br />

page 6-14 Omni<strong>Switch</strong> <strong>AOS</strong> Release 8 <strong>Switch</strong> <strong>Management</strong> <strong>Guide</strong> May 2014

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!