Uploaded image for project: 'WildFly Elytron'
  1. WildFly Elytron
  2. ELY-297

Account Lockout

XMLWordPrintable

      One issue to consider is that we are using realms to integrate with existing user stores so may not be able to update the remote store: -

      • Consider an option to update the remote store if possible.
      • If not cache a backlisted user until an admin unlocks that account

      Before being implemented this feature will require further discussion, in additional to locking mechanisms for unlocking should also be considered and also the potentional for denail of service type attacks based on locking out the administrators.

            Unassigned Unassigned
            darran.lofthouse@redhat.com Darran Lofthouse
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: