T G W S IP -F X S /F S O G a te w a y S e rie s
User Manual
Tadiran Telecom
83
2.7.3 Brute Force Login Prevention
A brute force login attack makes multiple login attempts within a short time period, trying to guess the
password to login.
To prevent brute force login attacks, the TGW provides several methods including CAPTCHA for
logging into Web GUI, limiting the number of login attempts, and access whitelist of trusted IP addresses.
Login Retry Lockout Configuration
After a specified number of login attempts within a specified time, the source IP address of the accessor
will be blocked.
After login, choose
Security
>
Brute force login prevention
, to go to the configuration interface.
Brute Force Login Prevention (Login Retry Lockout) Configuration Interface
Figure 2-40
Table 2-35
Login Retry Lockout Parameters
Name
Description
Max. login failure
Specify the maximum number of login failures allowed for a source IP address from which
login attempts are made to the Web GUI or SSH in a day. The IP addresses whose login
attempts exceeding the specified limit will be added to the locked list.
Value range: 1–5 times/day
Default value: 3 times/day
Lock time
Specify the IP address lock time. An IP address will be unlocked after the lock time and is
allowed to access the device again.
Default value: 10 minutes
Locked IP addresses
Summary of Contents for aeonix TGW4
Page 15: ...Tadiran Telecom xv...
Page 16: ......
Page 133: ...T G W S IP F X S F S O G a te w a y S e rie s User Manual Tadiran Telecom 117...