Bug: Dynamic IP Blocking Does Not Block Repeated Failed Logins on RADIUS Realms

Follow
    Applies to:
  • SecureAuth Identity Platform
Deployment model:
  • Cloud
  • Hybrid
  • On Premises
  • Version Affected: 24.4.2 and earlier
    Bug Number: SAIDP-870
    Bug Status: Closed - Fixed
    Fixed in Version(s): 24.4.3

     

    Overview

    On SecureAuth Identity Platform 24.4.2 and earlier, Dynamic IP Blocking does not block repeated failed login attempts on RADIUS Authentication realms.

     

    Cause

    A defect in Dynamic IP Blocking's failure-counter logic prevented failure counts from incrementing correctly for RADIUS realms, so an IP address's failed login attempts never reached the threshold needed to trigger a block.

    See Troubleshooting: Dynamic IP Blocking Is Not Reporting Certain IP Addresses for a related but distinct scenario, where no block appears to trigger simply because no login attempt was ever made from that IP address.

     

    Resolution / Workaround

    Upgrade to version 24.4.3 or later to resolve this issue.


     

    SecureAuth Knowledge Base Articles provide information based on specific use cases and may not apply to all appliances or configurations. Be advised that these instructions could cause harm to the environment if not followed correctly or if they do not apply to the current use case.

    Customers are responsible for their own due diligence prior to utilizing this information and agree that SecureAuth is not liable for any issues caused by misconfiguration directly or indirectly related to SecureAuth products.

    0 out of 0 found this helpful

    Comments

    0 comments

    Please sign in to leave a comment.