7.12 Limit number of failed login attempts

Information

The RETRIES parameter is the number of failed login attempts a user is allowed before being disconnected from the system and forced to reconnect. Setting this number to a reasonably low value helps discourage brute force password guessing attacks.

See Also

https://workbench.cisecurity.org/files/633

Item Details

Audit Name: CIS Solaris 9 v1.3

Category: ACCESS CONTROL

References: 800-53|AC-7a., CSCv6|16.7

Plugin: Unix

Control ID: 280b3f2a6c20c4db7aa12db8ec2ce8fc1361113c03925fc586d07832cb620b1f