Hi @alangridge ,
An operator account getting locked because of unsuccessful logon is different from disabling-enabling an operator account.
An Account lockout mechanism is available within the logon() API. It prevents any further login attempts after a certain number of consecutive failed login attempts within a specified time frame.
Four options are available to configure the lockout mechanism, and you can explore this options under /Administration/Platform/Options/
-
XtkSecurity_max_Unsuccessul_Attempts_Allowed: max unsuccessful attempt to block a key within specified duration. The default value is 3.
-
XtkSecurity_Initial_Ban_Duration: duration for which key will be banned for the first time. The default duration is 5 minutes.
-
XtkSecurity_Max_Ban_Duration: max duration for which a key can be banned. You can search for the value in /Administration/Platform/Options/ folder, if the value is 60, then the operator needs to wait for 60 minutes to get his/her account to get unlocked.
-
XtkSecurity_Examine_Window: time Window to track number of unsuccessful login attempts to ban an invalid key. The default duration is 10 mins.
For example, if someone tries 3 unsuccessful attempts in 10 mins, his key will be blocked for 5 mins.
Reference Document