Graylog2 / Graylog2/graylog2-server

Authentication Features Request

Open
#14,484 1 comment 0 reactions 0 assignees View on GitHub
feature triaged
Dominant language
Java
Stars
8.1k
Forks
1.1k
Avg merge
1d 20h
Merged PRs (30d)
217

Description

We found below features not available with Graylog
- Enforce ‘Maximum Password Age’.
- Enforce 'Maximum Password length [Combination of Letter (Uppercase & lowercase), Special character, Number ]'.
- Account lockout after Incorrect password [Say if a user is entering incorrect password for n no of times, the account should be locked, only admin can unlock the account].

## What?

Shared the details above.

## Why?

As per IT Security guideline these feature should me in any Application which prevents unauthorized login to Graylog.

## Your Environment

* Graylog Version: graylog-server-4.0.15-1.noarch
* Elasticsearch Version: elasticsearch-6.8.11-1.noarch
* MongoDB Version: mongodb-org-server-4.0.10-1.el7.x86_64
* Operating System: Red Hat Enterprise Linux Server release 7.7 (Maipo)
* Browser version: Google Chrome Version 109.0.5414.75 (Official Build) (64-bit)

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.