Password Control Configuration
561
Configuring Login
Attempt Times
Limitation and Failure
Processing Mode
When the maximum number of attempts is exceeded, the system operates in one
of the following processing mode:
■
lock-time
: In this mode, the system inhibits the user from re-logging in within
a certain time period. After the period, the user is allowed to log into the
switch again. By default, this time is 120 minutes.
■
lock
: In this mode, the system inhibits the user from re-logging in forever. The
user is allowed to log into the switch again only after the administrator
removes the user from the user blacklist.
■
unlock
: In this mode, the system allows the user to log in again.
c
CAUTION:
■
Login attempt times limitation and failure processing are not supported for FTP
and Super passwords.
■
The number of retries allowed to enter an SSH password is determined by the
configuration of the SSH server instead of that configured by using the
password-control login-attempt
command. You can use the
password-control login-attempt
command to configure the actions to be
taken when the number of retries to enter the SSH password exceeds the
configured value. Refer to “SSH Configuration” on page 387 for information
about SSH server.
■
If a user in the blacklist changes his/her IP address, the blacklist will not affect
the user anymore when the user logs into the switch.
The system administrator can perform the following operations to manually
remove one or all user entries in the blacklist.
Configure a user login
password in interactive
mode
password
Optional
Input a password according
to the system prompt and
ensure the two input
passwords are consistent.
Table 413
Configure a user login password in interactive mode
Operation Command
Description
Table 414
Configure the login attempts limitation and the failure processing mode
Operation
Command
Description
Enter system view
system-view
-
Enable the login attempts
limitation, configure the
maximum number of
attempts and configure
the processing mode used
when the maximum
number of attempts is
exceeded.
password-control
login-attempt
login-times
[
exceed
{
lock
|
unlock
|
lock-time
time
} ]
Optional
By default, the maximum
number of attempts is three,
and the switch operates in
the lock-time processing
mode when the maximum
number of attempts is
exceeded.
Содержание Switch 4210 9-Port
Страница 10: ...Password Control Configuration 556 Displaying Password Control 563 Password Control Configuration Example 564 ...
Страница 22: ...20 CHAPTER 1 CLI CONFIGURATION ...
Страница 74: ...72 CHAPTER 3 CONFIGURATION FILE MANAGEMENT ...
Страница 84: ...82 CHAPTER 5 VLAN CONFIGURATION ...
Страница 96: ...94 CHAPTER 8 IP PERFORMANCE CONFIGURATION ...
Страница 108: ...106 CHAPTER 9 PORT BASIC CONFIGURATION ...
Страница 122: ...120 CHAPTER 11 PORT ISOLATION CONFIGURATION ...
Страница 140: ...138 CHAPTER 13 MAC ADDRESS TABLE MANAGEMENT ...
Страница 234: ...232 CHAPTER 17 802 1X CONFIGURATION ...
Страница 246: ...244 CHAPTER 20 AAA OVERVIEW ...
Страница 270: ...268 CHAPTER 21 AAA CONFIGURATION ...
Страница 292: ...290 CHAPTER 26 DHCP BOOTP CLIENT CONFIGURATION ...
Страница 318: ...316 CHAPTER 29 MIRRORING CONFIGURATION ...
Страница 340: ...338 CHAPTER 30 CLUSTER ...
Страница 362: ...360 CHAPTER 33 SNMP CONFIGURATION ...
Страница 368: ...366 CHAPTER 34 RMON CONFIGURATION ...
Страница 450: ...448 CHAPTER 39 TFTP CONFIGURATION ...
Страница 451: ......
Страница 452: ...450 CHAPTER 39 TFTP CONFIGURATION ...
Страница 470: ...468 CHAPTER 40 INFORMATION CENTER ...
Страница 496: ...494 CHAPTER 44 DEVICE MANAGEMENT ...