<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic LOCAL Server Group Account Lockout in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/local-server-group-account-lockout/m-p/4799597#M1098922</link>
    <description>&lt;P&gt;Scenario:&amp;nbsp;I'm on ASA 5555&lt;/P&gt;&lt;P&gt;Users/AAA &amp;gt; AAA Server Groups &amp;gt; LOCAL Server Group&lt;/P&gt;&lt;P&gt;Edit &amp;gt; Enable Local User Lockout &amp;gt; Maximum Attempts = 3&lt;/P&gt;&lt;P&gt;I can't find any info about how/where to unlock an account or if it happens automatically.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 22 Mar 2023 18:48:27 GMT</pubDate>
    <dc:creator>securityengineering</dc:creator>
    <dc:date>2023-03-22T18:48:27Z</dc:date>
    <item>
      <title>LOCAL Server Group Account Lockout</title>
      <link>https://community.cisco.com/t5/network-security/local-server-group-account-lockout/m-p/4799597#M1098922</link>
      <description>&lt;P&gt;Scenario:&amp;nbsp;I'm on ASA 5555&lt;/P&gt;&lt;P&gt;Users/AAA &amp;gt; AAA Server Groups &amp;gt; LOCAL Server Group&lt;/P&gt;&lt;P&gt;Edit &amp;gt; Enable Local User Lockout &amp;gt; Maximum Attempts = 3&lt;/P&gt;&lt;P&gt;I can't find any info about how/where to unlock an account or if it happens automatically.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 18:48:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/local-server-group-account-lockout/m-p/4799597#M1098922</guid>
      <dc:creator>securityengineering</dc:creator>
      <dc:date>2023-03-22T18:48:27Z</dc:date>
    </item>
    <item>
      <title>Re: LOCAL Server Group Account Lockout</title>
      <link>https://community.cisco.com/t5/network-security/local-server-group-account-lockout/m-p/4799624#M1098925</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1083112"&gt;@securityengineering&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;From ASA 9.17 - The ASA can lock out local users after a configurable number of failed login attempts. This feature did not apply to users with privilege level 15. Also, &lt;EM&gt;&lt;STRONG&gt;a user would be locked out indefinitely until an admin unlocked their account&lt;/STRONG&gt;&lt;/EM&gt;. Now, users will be unlocked after 10 minutes (from 9.17) unless an admin uses the clear aaa local user lockout command before then. Privilege level 15 users are also now affected by the lockout setting.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/asa919/asdm719/general/asdm-719-general-config/aaa-local.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/asa919/asdm719/general/asdm-719-general-config/aaa-local.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Unfortunately 9.17 is not available on the ASA 5555 hardware you are running, so you'd have to manually unlock the accounts.&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 20:12:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/local-server-group-account-lockout/m-p/4799624#M1098925</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-03-22T20:12:35Z</dc:date>
    </item>
  </channel>
</rss>

