08-01-2012 04:32 AM - edited 02-21-2020 06:14 PM
Hello,
I just can't seem to find the setting for Web and client Anyconnect to set the maximum failed login attempts when on Windows database LDAP.
I would like that after maximum 3 failed login attempts the possebility to login again times out for say 10 minutes.
At this moment it's possible to login as often as you would like, which is a big security issue.
Please, I can use some help to get this done, many thanks in advance.
Best,
Orson
Solved! Go to Solution.
08-01-2012 07:18 AM
I don't think this can be configured in AnyConnect or on the ASA. They both rely on the settings on the Windows server. One can set this behavior there. (reference)
08-01-2012 07:49 AM
Marvin,
If you were interested to see how to configure this in AD here are the steps if you are running in a windows 2008 functional domain.
http://technet.microsoft.com/en-us/library/cc770842%28v=ws.10%29.aspx
Thanks,
Tarik Admani
*Please rate helpful posts*
08-01-2012 08:57 AM
Hi there,
This indeed is not a feature the ASA controls, the AAA server is the one in charge of it.
Thanks.
08-01-2012 07:18 AM
I don't think this can be configured in AnyConnect or on the ASA. They both rely on the settings on the Windows server. One can set this behavior there. (reference)
08-01-2012 07:49 AM
Marvin,
If you were interested to see how to configure this in AD here are the steps if you are running in a windows 2008 functional domain.
http://technet.microsoft.com/en-us/library/cc770842%28v=ws.10%29.aspx
Thanks,
Tarik Admani
*Please rate helpful posts*
08-01-2012 08:57 AM
Hi there,
This indeed is not a feature the ASA controls, the AAA server is the one in charge of it.
Thanks.
08-02-2012 12:19 AM
Allright, thanks guys, this was the direction to go, many thanks again....
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide