[keycloak-user] Account lock after several attempts

Stian Thorgersen sthorger at redhat.com
Fri Jan 13 02:42:04 EST 2017


Admin can unlock through the admin console. You can also set failure reset
time to a large number. It's not possible at the moment to permanently
block the account, but there's another user that wants that who is working
on a PR for it.

On 12 January 2017 at 17:19, Dekel Aslan <dekela at perfectomobile.com> wrote:

> Hi,
> I noticed that there is the feature for brute force detection, but it only
> locks the user for a period of time with no option for admin to unlock.
> Is there another mechanism that simply after X attempts locks the user
> until an admin releases him?
>
> Thanks :)
> Dekel.
>
> The information contained in this message is proprietary to the sender,
> protected from disclosure, and may be privileged. The information is
> intended to be conveyed only to the designated recipient(s) of the message.
> If the reader of this message is not the intended recipient, you are hereby
> notified that any dissemination, use, distribution or copying of this
> communication is strictly prohibited and may be unlawful. If you have
> received this communication in error, please notify us immediately by
> replying to the message and deleting it from your computer. Thank you.
> _______________________________________________
> keycloak-user mailing list
> keycloak-user at lists.jboss.org
> https://lists.jboss.org/mailman/listinfo/keycloak-user
>


More information about the keycloak-user mailing list