Operational Defect Database

BugZero found this defect 850 days ago.

F5 | 1072705

Lock admin when using remote auth

Last update date:

4/26/2024

Affected products:

BIG-IP

BIG-IP LTM

Affected releases:

15.1.3

15.1.3.1

15.1.4

15.1.4.1

15.1.5

15.1.5.1

15.1.6

15.1.6.1

15.1.7

15.1.8

15.1.8.1

15.1.8.2

Fixed releases:

No fixed releases provided.

Description:

Severity: 4-Minor ... Symptoms ... For local authentication, the admin user is locked out after "n"(configurable) wrong entries. ... But, the same lockout for admin is not working for remote LDAP authentication when "Lockout for admin" is enabled. ... Impact ... Admin does not get locked out even after entering wrong password after "n"(this is configurable) times. ... This will have an impact on configuring authentication policies for admin and user.. ... Conditions ... -- Remote Authentication is enabled. -- Lock out for admin is enabled.

Additional Resources / Links

Share:

BugZero® Risk Score

What's this?

Coming soon

Status

New

Learn More

Search:

...