Issue 8024 - Password Policy Logging Enhancement
Summary: Password Policy Logging Enhancement
Status: UNCONFIRMED
Alias: None
Product: OpenLDAP
Classification: Unclassified
Component: slapd (show other issues)
Version: unspecified
Hardware: All All
: --- enhancement
Target Milestone: ---
Assignee: OpenLDAP project
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2015-01-14 20:45 UTC by mwarren@symas.com
Modified: 2020-03-20 22:18 UTC (History)
0 users

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this issue.
Description mwarren@symas.com 2015-01-14 20:45:10 UTC
Full_Name: Mark Warren
Version: 2.4.x
OS: Linux
URL: ftp://ftp.openldap.org/incoming/
Submission from: (NULL) (72.35.133.119)


Greetings, 

We would like make a new feature request for enhanced logging within the
Password Policy Module. A customer has a need for logging of automated password
lockouts which occur after a certain number of failed binds within a given time
window. Pertinent info would include the DN of the locked out user as well as
the source IP of the failed attempt(s).

Best Regards,
Mark
Comment 1 Michael Ströder 2015-01-14 21:22:58 UTC
mwarren@symas.com wrote:
> We would like make a new feature request for enhanced logging within the
> Password Policy Module. A customer has a need for logging of automated password
> lockouts which occur after a certain number of failed binds within a given time
> window. Pertinent info would include the DN of the locked out user as well as
> the source IP of the failed attempt(s).

When running a consumer with slapo-accesslog (yes, not for delta-syncrepl)
slapo-ppolicy's modifications are written to the accesslog-DB. I use it in a
highly secure environment for seeing logins (slapo-lastbind) and login
failures (but no failure lockout).

Having just a syslog entry in this case would probably better regarding
performance though. Maybe even a info message along with the BIND RESULT
message would do.

Ciao, Michael.

Comment 2 Quanah Gibson-Mount 2017-04-12 20:13:34 UTC
moved from Incoming to Software Enhancements