Skip to main content
sinamdar
Staff & Editor
Staff & Editor
June 23, 2010

Technical Tip: How to configure blackout time for login attempts

  • June 23, 2010
  • 0 replies
  • 4218 views

Description

This article describes how to configure the blackout time parameter on a FortiGate.

Scope

FortiGate.

Solution

This is a security feature that blocks an IP address from making further login attempts after too many failed tries.

When a firewall authentication attempt fails 5 times within one minute, the IP address that is the source of the authentication attempts is denied access for the <blackout_time_int> period in seconds.

The range is from 0 to 3600 seconds. The default value is 0 seconds.

The parameter can be configured under 'user settings':

 

config user setting
    set auth-blackout-time <blackout_time_int>
end

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!