SAP Knowledge Base Article - Preview

3781673 - Brute force prevention for backoffice login does not work for the "admin" user

Symptom

  • The "Max brute force login attempts" configuration in backoffice is not working for the "admin" user.
  • The "admin" user is able to login to backoffice despite multiple consecutive unsuccessful login attempts more times than the configured "Max brute force login attempts".


Read more...

Environment

SAP Commerce, SAP Commerce Cloud

Product

SAP Commerce Cloud all versions ; SAP Commerce all versions

Keywords

brute force, bruteforce, max brute force login attempts, maxbruteforceloginattempts, backoffice login, hac login, login lockout, admin excluded, admin locked, admin blocked, admingroup, oauth2.maxAuthenticationAttempts, DefaultUserAuditLoginStrategy, userAuditLoginStrategy, account lock, failed login attempts, security configuration, lock duration, authentication , KBA , CEC-SCC-CDM-BO-FRW , Framework , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.