We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent dc39541 commit 461ca7eCopy full SHA for 461ca7e
files/common/var/lib/delphix-platform/ansible/10-delphix-platform/roles/delphix-platform/tasks/main.yml
@@ -336,6 +336,29 @@
336
regexp: '^#?[\s]*(auth[\s]+required[\s]+pam_wheel\.so.*)$'
337
replace: '\1'
338
339
+#
340
341
+# Lock out the user after an unsuccessful consecutive login attempts.
342
343
+- lineinfile:
344
+ path: /etc/pam.d/common-auth
345
+ line: "{{ item }}"
346
+ insertafter: BOF
347
+ with_items:
348
+ - 'auth required pam_tally2.so audit silent deny=5 unlock_time=900'
349
+
350
351
352
+# Configuration to enforce account lockout policies.
353
354
355
+ path: /etc/pam.d/common-account
356
357
+ insertafter: EOF
358
359
+ - 'account required pam_tally2.so'
360
361
362
#
363
# Enable SNMP client tools to load MIBs by default.
364
0 commit comments