3.2.4 /etc/security/login.cfg - loginreenable

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Defines the number of minutes after a port is locked when it will be automatically unlocked. This parameter is applicable to all tty connections and the system console.

In setting the loginreenable attribute, a locked port will be automatically re-enabled once a given number of minutes have passed.

Solution

In /etc/security/login.cfg, set the default stanza loginreenable attribute to 360 or greater-

chsec -f /etc/security/login.cfg -s default -a loginreenable=360

This means that a locked port will be automatically re-enabled 360 minutes after being locked.

See Also

https://workbench.cisecurity.org/files/528