Configure smart lockout in Control Hub

list-menuFeedback?
Enhance user account security in Control Hub by configuring smart lockout policies. Define the maximum number of failed sign-in attempts and enable incremental timed lockouts to prevent unauthorized access.

As an administrator, you have granular control over user account security. You can define the maximum number of failed sign-in attempts within a specified duration before a user account is temporarily locked.

You can enable incremental smart lockouts, which progressively increase the lockout duration with each repeated failure, making it more difficult for attackers to guess passwords. The maximum lockout time is limited to 24 hours.

Follow these steps to configure smart lockout policies.

1

Sign in to Control Hub.

2

Go to Management > Organization Settings > Settings and scroll down to the Smart lockout section.

Smart lockout always shows as Active.
3

Click Down arrow to expand and configure the following settings:

  • Maximum number of attempts—Select the number of failed sign-in attempts allowed before a lockout is initiated. You can set this value between 3 and 6 attempts. The default is 5 attempts.
  • Attempt failure duration (minutes)—Select the time window within which failed attempts are counted. The default is 5 minutes.
  • Base lockout duration (minutes)—Select the initial time window a user is locked out after reaching the maximum number of failed sign-in attempts The default is 1 minute.
4

Toggle Allow incremental smart lockout on to enable incremental lockouts.

This setting allows lockouts to become stricter over time. If a user triggers a lockout multiple times by exceeding the maximum attempts within the failure duration, then the system increases the lockout time with each successive lockout. The maximum lockout time is limited to 24 hours.
5

Select a value for the Lockout multiplier. The default value is 2.

When a user triggers a lockout multiple times, the base lockout duration is multiplied by this value for each subsequent lockout.
For example, if the base lockout is 1 minute and the multiplier is 2, the first lockout is 1 minute, the second is 2 minutes, the third is 4 minutes, and so on, up to 24 hours.
Was this article helpful?
Was this article helpful?