This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

WebAdmin ban IP time for bad logon attempts

Hello, hope you are well.

I am sure that if you enter the wrong username or password into Sophos UTM WebAdmin console 3 times it bans anymore attempts from the IP Address of the computer you are using. I am sure I found an article about this a while ago but cannot for the life of me find it again.

I basically want to know how long it bans the logon attempts from that IP Address for until it starts to allow attempts again.

Any help would be appreciated.

 

Regards,

 

Dave



This thread was automatically locked due to age.
  • The default is 10 minutes, Dave, but you can change that on the 'Advanced' tab of 'Definitions & Users >> Authentication Services'.  You might want to consider using the 'Never Block Networks' option there, too.

    Another trick to get past the block immediately - as root at the command line, you can extend the number of tries to 6 with:

     cc set auth block attempts 6

    Don't forget to change it back when you're done.

    Cheers - Bob

  • Hi Bob, hope you are well.

     

    Thanks for that, I must have skipped over that screen many times over the last few month.

     

    Thanks again

     

    Dave