Account lockout policy parameters

Last Updated : Apr 22, 2022 |
You can set values for the following parameters in the um.properties file to configure an account lockout policy for the Usage Metering Collector user accounts.
For more information about configuring an account lockout policy, see Configuring an account lockout policy for Usage Metering Collector user accounts.
Note:
Back up the um.properties file before performing any changes in the file. If the um.properties file is corrupted, you can replace the corrupted file with the backup file.
Prolog information
Parameter name
Description
Default value
Minimum configurable value
Maximum configurable value
failed.logins.to.delay
Type the number of consecutive failed login attempts for applying the login processing delay configured in Delay after 3 failed login attempts (seconds).
The login processing delay is applied to the last login attempt of the total login attempts specified in this parameter.
For example, if the value of this parameter is set to 4 and the first three consecutive login attempts by a user fail, then the fourth login attempt is processed for the number of seconds configured in Delay after 3 failed login attempts (seconds). Thus, delaying the last login attempt.
However, if a user provides valid credentials during the last login attempt, the delay is not applied to the login attempt.
For information about setting the login processing delay, see Configuring session timeout and failed login attempt threshold.
3
0
N/A
unlock.timeout.minutes
Type the number of minutes after which a locked user account must be automatically unlocked.
This parameter applies to user accounts that are locked because of consecutive failed login attempts as set in Account lockout threshold (failed login attempts).
Set the value to 0 if you do not want to unlock a user account automatically. However, you can manually unlock the user account.
For information about manually unlocking a user account, see Enabling or disabling a user account.
For information about setting the failed login attempt threshold, see Configuring session timeout and failed login attempt threshold.
10
0
N/A
lock.account.days
Type the number of days of inactivity, that is, zero logins done by using a user account, after which the user account must be locked.
The counter to count the number of days specified in this parameter starts from the password expiry day.
Set the value to 0 if you do not want to lock the user accounts because of inactivity.
This parameter does not apply to the oldest user account in Usage Metering Collector.
10
0
N/A