/
What value should pwdGraceAuthNLimit have in the default LDAP Password policy?
What value should pwdGraceAuthNLimit have in the default LDAP Password policy?
Background
The current default value of pwdGraceAuthNLimit is 0. This means that, once your password expires, you cannot change it.
This is not ideal and I am thinking that a default value of 6 would be better which would effectively give you three attempts to change your password before locking you out fully.
Unfortunately, there isn't a good message that is returned when you are fully locked out so this will need to be better documented in the User's Guide.
Action items
, multiple selections available,
Related content
How do we better protect the default login accounts and ensure password changes?
How do we better protect the default login accounts and ensure password changes?
More like this
Layout of the new SSP Documentation
Layout of the new SSP Documentation
More like this
Use of LDAP as backend for simpkv
Use of LDAP as backend for simpkv
More like this
Betty
Betty
More like this
2015-09-09 Retrospective
2015-09-09 Retrospective
More like this
Charlie
Charlie
More like this