Objective
This article describes?? how to unlock AAA user account.
Background
The Citrix NetScaler has the ability to set max logons and failed logon attempt time slice limits however previously there was no ability to unlock the accounts that have breached these limits in real time. With the release of NetScaler 10.5, a new feature has been introduced which provides the ability to unlock the locked user accounts after breaching these logon limits.Until the maxlog attempt is reached, the failed logintimeout counter does not increment but only after the maxattempts limit is crossed, logintimeout counter gets hit and starts incrementing. So if you try to login after the failedtimeout, you will be allowed to login successfully, else you needs to get the account unlocked using unlock aaa user command.
Instructions
Set the Parameters maxLoginAttempts and failedLoginTimeout
To set the parameters, use the following commands:>set authentication vserver <name>?? ?? [-maxLoginAttempts <positive_integer>] [-failedLoginTimeout <positive_integer>]
??
Note: Here, maxLoginAttempts value is 255 and failedLoginTimedout value is 65535 minutes.
Unlock the User Account Using CLI Command
To unlock the locked user account, run the following command in CLI:>unlock aaa user <username>
How to Use the Parameter
Complete the following steps:-
Set AAA logon parameters on AAA Vserver, enter maxLoginAttempts to 5 and failedLoginTimeout to 3 minutes.
>set authentication vserver <name>?? ?? -maxLoginAttempts 5?? -failedLoginTimeout?? 3 -
Type incorrect credentials for the first two attempts and then try typing the correct or incorrect credentials for the third attempt.
“You have exceeded the maximum login attempts. Please contact your administrator" message appears. -
Unlock?? the user account?? using the following CLI command:
unlock aaa user <user-name> -
Now log on again with correct credentials. The logon should be successful.
Note: Locked AAA user accounts can also be unlocked from NetScaler GUI:
Security?? > AAA > Application Traffic > Users > Action > Unlock
Supporto Citrix
Traduzione automatica
Questo articolo ?? ¨ stato tradotto da un sistema di traduzione automatica e non ?? ¨ stata valutata da persone. Citrix fornisce traduzione automatica per aumentare l'accesso per supportare contenuti; tuttavia, articoli automaticamente tradotte possono possono contenere degli errori. Citrix non ?? ¨ responsabile di incongruenze, errori o danni derivanti dell'uso di articoli automaticamente tradotte.
Citrix技術支持
自動翻譯
這篇文章被翻譯由一個自動翻譯系統,並沒有受到人們的審查。 Citrix提供自動翻譯,增加獲得支持的內容;但是,自動翻譯的文章可能可以包含錯誤。思傑不負責不一致,錯誤或損壞因使用自動翻譯的文章的結果。
Поддержка Citrix
Tradução automática
Эта статья была переведена автоматической системой перевода и не был рассмотрен людьми. Citrix обеспечивает автоматический перевод с целью расширения доступа для поддержки контента; Однако, автоматически переведенные статьи могут может содержать ошибки. Citrix не несет ответственности за несоответствия, ошибки, или повреждения, возникшие в результате использования автоматически переведенных статей.
시트릭스 지원
자동 번역
이 문서 자동 번역 시스템에 의해 번역 된 사람들에 의해 검토되지 않았다. 시트릭스는 컨텐츠를 지원하기 위해 접근을 높이기 위해 자동 번역을 제공합니다; 그러나, 자동으로 번역 기사 오류를 포함 할 수있다. 시트릭스는 자동으로 번역 된 기사의 사용의 결과로 발생하는 불일치, 오류 또는 손해에 대해 책임을지지 않습니다.