<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LGI_BRK_LIM in Operating System - OpenVMS</title>
    <link>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117675#M87646</link>
    <description>Think I found it.&lt;BR /&gt;&lt;BR /&gt;Someone can reconnect and reattempt login as long as the break-in limit (LGI_BRK_LIM) has not been exceeded during the monitoring period. &lt;BR /&gt;&lt;BR /&gt;Exceeded means &amp;gt;N thus = N+1.&lt;BR /&gt;&lt;BR /&gt;Wim</description>
    <pubDate>Mon, 17 Dec 2007 14:58:21 GMT</pubDate>
    <dc:creator>Wim Van den Wyngaert</dc:creator>
    <dc:date>2007-12-17T14:58:21Z</dc:date>
    <item>
      <title>LGI_BRK_LIM</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117671#M87642</link>
      <description>I have VMS 7.3 with LGI_BRK_LIM on 5. Freshly booted.&lt;BR /&gt;&lt;BR /&gt;From 1 decterm I do 5 T2T logins with the wrong password (user SYSTEM). The 6th login is with the correct password. And it works.&lt;BR /&gt;&lt;BR /&gt;Shouldn't the value of 5 prevent that the 6th login is working ? &lt;BR /&gt;&lt;BR /&gt;The 7th login is done with an invalid password and after that I really have an intruder (with show intr) and the login with the correct password fails.&lt;BR /&gt;&lt;BR /&gt;What did I miss ?&lt;BR /&gt;&lt;BR /&gt;Wim</description>
      <pubDate>Mon, 17 Dec 2007 14:28:24 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117671#M87642</guid>
      <dc:creator>Wim Van den Wyngaert</dc:creator>
      <dc:date>2007-12-17T14:28:24Z</dc:date>
    </item>
    <item>
      <title>Re: LGI_BRK_LIM</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117672#M87643</link>
      <description>I had tested this last year due to auditors asking and from my experience the breakin evasion kicks in after n+1 failures, where n is the value of LGI_BRK_LIM (subject to the other parameters, of course).&lt;BR /&gt;</description>
      <pubDate>Mon, 17 Dec 2007 14:44:54 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117672#M87643</guid>
      <dc:creator>EdgarZamora_1</dc:creator>
      <dc:date>2007-12-17T14:44:54Z</dc:date>
    </item>
    <item>
      <title>Re: LGI_BRK_LIM</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117673#M87644</link>
      <description>Edgar : OK but where is this documented ?&lt;BR /&gt;I find an example in the security guide where they explain that it is done at N, not N+1.&lt;BR /&gt;&lt;BR /&gt;Wim</description>
      <pubDate>Mon, 17 Dec 2007 14:49:06 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117673#M87644</guid>
      <dc:creator>Wim Van den Wyngaert</dc:creator>
      <dc:date>2007-12-17T14:49:06Z</dc:date>
    </item>
    <item>
      <title>Re: LGI_BRK_LIM</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117674#M87645</link>
      <description>You have to exceed the limit.  This is from the security guide:&lt;BR /&gt;&lt;BR /&gt;"In other words, suspects become intruders by&lt;BR /&gt;exceeding their allowed chances for login during the monitoring period.&lt;BR /&gt;&lt;BR /&gt;The chance count, set by the system parameter LGI_BRK_LIM, defines how many times a person can try logging in; the standard limit is five times."</description>
      <pubDate>Mon, 17 Dec 2007 14:57:32 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117674#M87645</guid>
      <dc:creator>EdgarZamora_1</dc:creator>
      <dc:date>2007-12-17T14:57:32Z</dc:date>
    </item>
    <item>
      <title>Re: LGI_BRK_LIM</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117675#M87646</link>
      <description>Think I found it.&lt;BR /&gt;&lt;BR /&gt;Someone can reconnect and reattempt login as long as the break-in limit (LGI_BRK_LIM) has not been exceeded during the monitoring period. &lt;BR /&gt;&lt;BR /&gt;Exceeded means &amp;gt;N thus = N+1.&lt;BR /&gt;&lt;BR /&gt;Wim</description>
      <pubDate>Mon, 17 Dec 2007 14:58:21 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/lgi-brk-lim/m-p/4117675#M87646</guid>
      <dc:creator>Wim Van den Wyngaert</dc:creator>
      <dc:date>2007-12-17T14:58:21Z</dc:date>
    </item>
  </channel>
</rss>

