The lock-authentication failed-count command sets the maximum number of allowed authentication failures.
The undo lock-authentication failed-count command restores the default maximum number of allowed authentication failures.
| Parameter | Description | Value |
|---|---|---|
| count | Specifies the maximum number of allowed authentication failures. | The value is an integer ranging from 1 to 5. The default value is 3. |
If the lock-authentication enable command is run and the number of account-specific authentication failures reaches an upper limit configured using the lock-authentication failed-count command, a FW locks an account, and no administrator can use the locked-out account to log in to the FW within a specified period of time.