Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Limit web interface login attempts

Posted on 2011-09-02
8
Medium Priority
?
1,046 Views
Last Modified: 2012-05-12
due to SAS 70 audit requirements i must enforce an attempted login limit on my web interface, which runs on the same box as the secure gateway.   W2k3 on IIS6.  WI 4.0.  SG 3.0.  Get me pointed in the right direction?
0
Comment
Question by:alexsupertramp
  • 4
  • 3
8 Comments
 
LVL 11

Expert Comment

by:KrAzY
ID: 36477096
Limit as in the amount of times they can log in in a certain amount of seconds/minutes or amount of login attempts and then lockout?  Does SAS have those limitations built in?  Usually you should look to your application to provide restrictions and not your Web Interface.
0
 
LVL 4

Author Comment

by:alexsupertramp
ID: 36479059
sorry, i wasn't specific enough: i need to limit the amount of incorrect login attempts at the web interface login.
0
 
LVL 11

Expert Comment

by:KrAzY
ID: 36479645
Does Active Directory "Login Attempts" satisfy this?
0
Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

 
LVL 4

Author Comment

by:alexsupertramp
ID: 36491415
where is there a "login attempts" option in ad?
0
 
LVL 11

Accepted Solution

by:
KrAzY earned 1000 total points
ID: 36500465
0
 
LVL 4

Author Comment

by:alexsupertramp
ID: 36500624
Thanks, I found this yesterday, and it's good info, but from testing i've done i don't think it's effective at the web interface login level.  
0
 
LVL 24

Assisted Solution

by:Dirk Kotte
Dirk Kotte earned 1000 total points
ID: 36544622
for comliance we use two factor authentication fron aladdin / safenet.
this solution (safeword) has build-in attack logging and protection.
 
0
 
LVL 4

Author Closing Comment

by:alexsupertramp
ID: 36546015
Thanks for the valuable info.  Both solutions will be helpful.
0

Featured Post

How to Use the Help Bell

Need to boost the visibility of your question for solutions? Use the Experts Exchange Help Bell to confirm priority levels and contact subject-matter experts for question attention.  Check out this how-to article for more information.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
In the absence of a fully-fledged GPO Management product like AGPM, the script in this article will provide you with a simple way to watch the domain (or a select OU) for GPOs changes and automatically take backups when policies are added, removed o…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This video shows how to use Hyena, from SystemTools Software, to update 100 user accounts from an external text file. View in 1080p for best video quality.

972 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question