登陆错误多次导致锁定

用户密码锁定
1 ssh -vvv 命令 查看客户端日志
2 查看服务端日志
[root@cl-idp-03:/var/log] tail -f auth.log
Oct 9 10:19:01 cl-idp-03 CRON[5157]: pam_unix(cron:session): session opened for user root by (uid=0)
Oct 9 10:19:01 cl-idp-03 CRON[5157]: pam_tally2(cron:setcred): unknown option: no_magic_root
Oct 9 10:19:01 cl-idp-03 CRON[5157]: pam_tally2(cron:setcred): unknown option: reset
Oct 9 10:19:01 cl-idp-03 CRON[5157]: pam_unix(cron:session): session closed for user root
Oct 9 10:20:01 cl-idp-03 CRON[5177]: pam_tally2(cron:setcred): unknown option: no_magic_root
Oct 9 10:20:01 cl-idp-03 CRON[5177]: pam_tally2(cron:setcred): unknown option: reset
Oct 9 10:20:01 cl-idp-03 CRON[5177]: pam_unix(cron:session): session opened for user root by (uid=0)
Oct 9 10:20:01 cl-idp-03 CRON[5177]: pam_tally2(cron:setcred): unknown option: no_magic_root
Oct 9 10:20:01 cl-idp-03 CRON[5177]: pam_tally2(cron:setcred): unknown option: reset
Oct 9 10:20:01 cl-idp-03 CRON[5177]: pam_unix(cron:session): session closed for user root
Oct 9 10:20:30 cl-idp-03 sshd[5191]: pam_tally2(sshd:auth): unknown option: no_magic_root
Oct 9 10:20:30 cl-idp-03 sshd[5191]: pam_tally2(sshd:auth): unknown option: reset
Oct 9 10:20:30 cl-idp-03 sshd[5191]: pam_tally2(sshd:auth): user wcddl (1007) tally 26, deny 4
Oct 9 10:20:32 cl-idp-03 sshd[5191]: Failed password for wcddl from 182.195.81.155 port 52634 ssh2
3 pam_tally2 解锁

查看用户错误登录次数

[root@cl-idp-03:/var/log] pam_tally2 -u wcddl
Login Failures Latest failure From
wcddl 26 10/09/19 10:20:30 182.195.81.155

错误登录次数清零

[root@cl-idp-03:/var/log] pam_tally2 -r -u wcddl
Login Failures Latest failure From
wcddl 26 10/09/19 10:20:30 182.195.81.155

查看用户错误登录次数

[root@cl-idp-03:/var/log] pam_tally2 -u wcddl
Login Failures Latest failure From
wcddl 0
4 查看用户状态是否锁定
[root@cl-idp-03:/root] chage -l wcddl
Last password change : Oct 09, 2019
Password expires : Jan 07, 2020
Password inactive : never
Account expires : never
Minimum number of days between password change : 7
Maximum number of days between password change : 90
Number of days of warning before password expires : 7
5 查看用户是否锁定
[root@cl-idp-03:/root] passwd -S wcddl
wcddl P 10/09/2019 7 90 7 -1

猜你喜欢

转载自blog.csdn.net/baidu_31405631/article/details/108979846
今日推荐