Users Guide

Table Of Contents
Enable user lockout
By default, a maximum of three consecutive failed password attempts is supported on the switch. You can set a limit to the maximum
number of allowed password retries with a specied lockout period for the user ID.
This feature is available only for the sysadmin and secadmin roles.
Congure user lockout settings in CONFIGURATION mode.
password-attributes {[max-retry number ] [lockout-period minutes]}
max-retry number — Sets the maximum number of consecutive failed login attempts for a user before the user is locked out,
from 0 to 16; default 3.
lockout-period minutes — Sets the amount of time that a user ID is prevented from accessing the system after exceeding
the maximum number of failed login attempts, from 0 to 43,200; default 0.
When a user is locked out due to exceeding the maximum number of failed login attempts, other users can still access the switch.
By default, lockout-period minutes is 0; no lockout period is congured. Failed login attempts do not lock out a user.
Congure user lockout
OS10(config)# password-attributes max-retry 4 lockout period 360
Limit concurrent login sessions
To avoid an unlimited number of active sessions on a switch for the same user ID, limit the number of console and remote connections. Log
in from a console connection by cabling a terminal emulator to the console serial port on the switch. Log in to the switch remotely through
a virtual terminal line, such as Telnet and SSH.
Congure the maximum number of concurrent login sessions in CONFIGURATION mode.
OS10(config)# login concurrent-session limit number
limit number — Sets the maximum number of concurrent login sessions allowed for a user ID, from 1 to 12; default 10.
When you congure the maximum number of allowed concurrent login sessions, take into account that:
Each remote VTY connection counts as one login session.
All login sessions from a terminal emulator on an attached console count as one session.
Congure concurrent login sessions
OS10(config)# login concurrent-session limit 4
If you log in to the switch after the maximum number of concurrent sessions are active, an error message displays. To log in to the system,
close one of your existing sessions.
OS10(config)# login concurrent-session limit 4
Too many logins for 'admin'.
Last login: Wed Jan 31 20:37:34 2018 from 10.14.1.213
Connection to 10.11.178.26 closed.
Current sessions for user admin:
Line Location
2 vty 0 10.14.1.97
3 vty 1 10.14.1.97
4 vty 2 10.14.1.97
5 vty 3 10.14.1.97
Security
941