vCenter: vcenter-8.administration-sso-lockout-policy-unlock-time

Information

The vCenter Server must unlock accounts after a specified timeout period. Repeated failed logins may suggest security threats. Due to the importance of vCenter Server accounts should not automatically unlock when they have been locked due to multiple login failures. Ensure that you have your [email protected] information and that it is valid.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Get-SsoLockoutPolicy | Set-SsoLockoutPolicy -AutoUnlockIntervalSec 0

See Also

https://github.com/vmware/vcf-security-and-compliance-guidelines/raw/refs/heads/main/security-configuration-hardening-guide/vsphere/8.0/