disable user after several failed password attempts

(4 posts) (2 voices)

Tags:

No tags yet.

  1. Mark Tetrode, Member

    Hi Support

    Is it possible to disable a user after several failed password attempts, and if so, how?

    If not, can you put this on the roadmap?

    Thanks

    Mark

  2. myDBR Team, Key Master

    You mean disable the person/bot who is trying to quess the password?

    If you have problems with that, the latest version adds Two-Factor Authentication, which makes the quessing pretty much impossible.
    --
    myDBR Team

  3. Mark Tetrode, Member

    Thanks

    Does the 2FA replaces the password or is this in addition to the password?

  4. myDBR Team, Key Master

    Two-Factor Authentication adds additional authentication on top of the normal username / password. At first stage user is asked the username/password and based on that information, an one-time password (usually generated from a smartphone app) is asked. So, even if the users username/password is known to attacker, the attacker still would not able to access the system.

    See documentation.

    --
    myDBR Team


Reply

You must log in to post.