UCF STIG Viewer Logo

The delay between login prompts following a failed login attempt must be at least 4 seconds.


Overview

Finding ID Version Rule ID IA Controls Severity
V-768 GEN000480 SV-35268r1_rule ECLO-1 ECLO-2 Medium
Description
Enforcing a delay between successive failed login attempts increases protection against automated password guessing attacks.
STIG Date
HP-UX 11.23 Security Technical Implementation Guide 2012-05-25

Details

Check Text ( C-35100r1_chk )
Check the time delay between unsuccessful login attempts
# /usr/lbin/getprdef -m | grep "dlylntr"
Fix Text (F-30369r1_fix)
# usr/lbin/modprdef -m dlylntr=