525
undo attack-defense login enable
Default
Login attack prevention is disabled.
Views
System view
Predefined user roles
network-admin
mdc-admin
Usage guidelines
After a user fails the maximum number of login attempts, login attack prevention uses the blacklist to
block the user from logging in during the block period.
For login attack prevention to take effect, you must enable the global blacklist feature.
Examples
# Enable login attack prevention.
<Sysname> system-view
[Sysname] attack-defense login enable
Related commands
blacklist global enable
attack-defense login max-attempt
Use
attack-defense login max-attempt
to set the maximum number of successive login failures for
each user.
Use
undo attack-defense login max-attempt
to restore the default.
Syntax
attack-defense login max-attempt max-attempt
undo attack-defense login max-attempt
Default
Login attack prevention detects a login attack if a user fails three successive login attempts.
Views
System view
Predefined user roles
network-admin
mdc-admin
Parameters
max-attempt
: Specifies the maximum number of login failures. The value range is 1 to 60.
Usage guidelines
After a user fails the maximum number of login attempts, login attack prevention uses the blacklist to
block the user from logging in during the block period.
For login attack prevention to take effect, you must enable the global blacklist feature.