cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1408
Views
0
Helpful
1
Replies

telnet lock out

errol.simon
Level 1
Level 1

Does anyone know the best way of finding out how long a user is locked out of a cisco router when they have exceeded the maximum number of failed telnet login attempts? I want to control:

1. How many telnet login attempts are allowed before the user is locked out.

2. How long the user is locked out for.

I'd be grateful if you can tel me the defaults for the above for say a 1700 or 2600 router.

Thanks.

1 Reply 1

jekrauss
Level 1
Level 1

1. By default, it's set to 3 attempts. If you are performing local authentication, then you can configure your router:

aaa authentication attempts <#>

If you are utilizing a AAA server, then configure it there.

2. Length of logout can't be controlled locally. If you are using a AAA server, then it will be AAA server dependent.

HTH

Jeff