Hello,
So I have a question I cannot find if there is an answer to.
We have a Fortigate 201E that contains a dedicated management interface. We do NOT have that interface connected normally to any network. We use it as a "Something has gone wrong, and I need direct access to the firewall"...
The problem we had (literally this morning), was that we locked ourselves out, because most of our accounts are LDAP based, and suddenly the firewall couldn't connect to the internal network. We have a local admin account, but for some reason, we had 5 different passwords saved for that account. This locked us out, and delayed us getting services back online because of this simple problem.
I would like to have the max login attempts either disabled, or at least changed for that single interface only. Can this be done?
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hello,
There are no interface-specific settings.
But below are the settings to increase the lockout threshold ranging from 0-10 :
# config user setting
set auth-lockout-threshold <number from 0-10>
set auth-lockout-duration 100
end
Hello,
There are no interface-specific settings.
But below are the settings to increase the lockout threshold ranging from 0-10 :
# config user setting
set auth-lockout-threshold <number from 0-10>
set auth-lockout-duration 100
end
Yes, there is a way.
If you had tried to login on the console port you would have noticed that there is no lockout threshold. Physical security is an important part of network security, as you see.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1105 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.