Solved

Limit web interface login attempts

Posted on 2011-09-02
8
1,033 Views
Last Modified: 2012-05-12
due to SAS 70 audit requirements i must enforce an attempted login limit on my web interface, which runs on the same box as the secure gateway.   W2k3 on IIS6.  WI 4.0.  SG 3.0.  Get me pointed in the right direction?
0
Comment
Question by:alexsupertramp
  • 4
  • 3
8 Comments
 
LVL 11

Expert Comment

by:KrAzY
ID: 36477096
Limit as in the amount of times they can log in in a certain amount of seconds/minutes or amount of login attempts and then lockout?  Does SAS have those limitations built in?  Usually you should look to your application to provide restrictions and not your Web Interface.
0
 
LVL 4

Author Comment

by:alexsupertramp
ID: 36479059
sorry, i wasn't specific enough: i need to limit the amount of incorrect login attempts at the web interface login.
0
 
LVL 11

Expert Comment

by:KrAzY
ID: 36479645
Does Active Directory "Login Attempts" satisfy this?
0
Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

 
LVL 4

Author Comment

by:alexsupertramp
ID: 36491415
where is there a "login attempts" option in ad?
0
 
LVL 11

Accepted Solution

by:
KrAzY earned 250 total points
ID: 36500465
0
 
LVL 4

Author Comment

by:alexsupertramp
ID: 36500624
Thanks, I found this yesterday, and it's good info, but from testing i've done i don't think it's effective at the web interface login level.  
0
 
LVL 23

Assisted Solution

by:Dirk Kotte
Dirk Kotte earned 250 total points
ID: 36544622
for comliance we use two factor authentication fron aladdin / safenet.
this solution (safeword) has build-in attack logging and protection.
 
0
 
LVL 4

Author Closing Comment

by:alexsupertramp
ID: 36546015
Thanks for the valuable info.  Both solutions will be helpful.
0

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

After several days of searching and hunting for limited documentation, I wanted to share this guide to hopefully save someone the hassle of trying to figure this out on their own. I have tested this on Xendesktop 7.1 and PS 4.5 running simultaneous…
This article outlines the process to identify and resolve account lockout in an Active Directory environment.
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
How to install and configure Citrix XenApp 6.5 - Part 1. In this video tutorial we have explained step by step installation of Citrix XenApp 6.5 Server on Windows Server 2008 R2 is explained in this video. We have explained the difference between…

803 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question