Password Lockout Examples
The following examples illustrate how the Cloud Access Service CAS password lockout works.
In all examples, the administrators has configured 4 unsuccessful password attempts before lockout and a lockout duration of 30 minutes.
Four Unsuccessful Password Attempts
Time in Minutes | User Activity |
|---|---|
00:00 | User1 has first unsuccessful password attempt. |
00:01 | User1 has second unsuccessful password attempt. |
00:02 | User1 has third unsuccessful password attempt. |
00:03 | User1 has fourth unsuccessful password attempt. CAS locks the password method for this user for 30 minutes. |
00:25 | User1 submits a password attempt (either with correct or incorrect password). CAS ignores the request because the method is locked. |
00:33 | CAS unlocks the password method for the user and resets the number of unsuccessful password attempts. |
00:56 | User1 completes password authentication. |
Two Unsuccessful Password Attempts and One Successful Attempt
Time in Minutes | User Activity |
|---|---|
00:00 | User1 has first unsuccessful password attempt. |
00:01 | User1 has second unsuccessful password attempt. |
00:02 | User1 completes password authentication. CAS resets the number of unsuccessful password attempts. |
CAS Resets Unsuccessful Attempts
Time in Minutes | User Activity |
|---|---|
00:00 | User1 has first unsuccessful password attempt. |
00:15 | User1 has second unsuccessful password attempt. |
00:29 | User1 has third unsuccessful password attempt. |
00:59 | CAS resets the number of unsuccessful password attempts. |
01:00 | User1 has first unsuccessful password attempt. |
01:02 | User1 completes password authentication. |
Related Articles
How to improve performance with business description processing in RSA Identity Governance & Lifecycle 129Number of Views Password Policy 123Number of Views Quick Setup Guide - Cloud Access Service My Page SSO - Step 6: Add an Access Policy 15Number of Views How to display an iPhone picture in Self-Service console for iphone2.x token distribution - AM 66Number of Views Edit Domain Name in a Fully Qualified Trusted User Name 22Number of Views
Trending Articles
RSA Authentication Manager 8.9 Release Notes (January 2026) RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide RSA-2026-07: RSA Authentication Manager Security Update for Third-Party Component Vulnerabilities Downloading RSA Authentication Manager license files or RSA Software token seed records RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide