[RADIATOR] A way to verify that the number of failed attempt is lesser than 3 in the las 30 minutes

Pascal Beauregard Pascal.Beauregard at USherbrooke.ca
Wed May 22 10:09:20 CDT 2013


Hi,

We would like to block request to our Active Directory if a wireless user have been rejected  3 times in the last 30 minutes.

We have Cisco Wireless Controllers, Radiator and AD. In a university environment a lot of our users have multiple wireless devices all authenticating trough Radiator and AD. We have a password expiration delay of 6 monts in AD. When the password expire for a user, the wireless devices of that user tries to authenticates to the wireless network over and over until the AD account is locked. The account is locked for 30 minutes.

So if Radiator can do that, we would like to block authentication request after 3 unsuccessful requests in the last 30 minutes before doing the AuthByNTLM.

I presume, we are not the only organization  that face this issue.


______________________________
Pascal Beauregard
Analyste en télécommunications
Service des Technologies de l'information
Université de Sherbrooke

Tél. : 819-821-7770
Courriel : pascal.beauregard at usherbrooke.ca




-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://www.open.com.au/pipermail/radiator/attachments/20130522/c763b0bd/attachment.html 


More information about the radiator mailing list