You can restrict the number and frequency of failed attempts to log on to the platform (authentication). This restriction will help protect the platform from network attacks that use automatic password brute-forcing.
Authentication settings are set separately for each type of account: user and administrator.
Configuring restrictions
To configure user authentication, on the right-hand menu, click the icon → Security policies. The section contains restriction settings and a list of blocked users.
Section interface
To set authentication restrictions:
- Click the Edit settings button in the required block — For admins, For users.
- Specify the required settings:
- Time between attempts — the minimum time after entering incorrect data, after which the user can try to login again;
- Number of failed attempts, pcs — the maximum number of failed entry attempts, after which the user's IP address will be blocked;
- Blocking duration — the time during which authentication will be unavailable;
- Reset period — the time after which the number of failed attempts will be reset.
- Click Save.
To disable user blocking, click the Unblock button on the user account line.
To update the list of blocked users, click Update the list.