Your account is locked. Try again in 1 minute

DarioMarbachWPG
New Contributor

Hello everyone

We're currently running into an issue. We've recently activated the LAPS for PreStage accounts. Seems that now after just one wrong try on the login screen the account gets locked for 1 minute. It happens to the LAPS, aswell as the local accounts. Is there any way to disable or set a higher number of wrong password-tries?

We've tried it with a Passcode Config Profile, but this did not help. Even if you set the number to 11, it still locks down after 1 try. This is pretty annoying, also considering the fact, that those LAPS passwords can be quite easy to mistype one letter.

Kind regards,

Dario

2 REPLIES 2

Bernard295Clark
New Contributor II

@DarioMarbachWPG wrote:

Hello everyone

We're currently running into an issue. We've recently activated the LAPS for PreStage accounts. Seems that now after just one wrong try on the login screen the account gets locked for 1 minute. It happens to the LAPS, aswell as the local accounts. Is there any way to disable or set a higher number of wrong password-tries?

We've tried it with a Passcode Config Profile, but this invisalign treatment did not help. Even if you set the number to 11, it still locks down after 1 try. This is pretty annoying, also considering the fact, that those LAPS passwords can be quite easy to mistype one letter.

Kind regards,

Dario


Hi Dario,

I understand the frustration. Ensure the Passcode Configuration Profile is properly applied and settings are correct. Review your Domain Controller’s policies for adjustments, and ensure you're on the latest Jamf Pro version. If it persists, consult Jamf Support for targeted assistance.

RoseCliver
New Contributor

@DarioMarbachWPG wrote:

Hello everyone

We're currently running into an issue. We've recently activated the LAPS for PreStage accounts. Seems that now after just one wrong try on the login screen the account gets locked for 1 minute. It happens to the LAPS, aswell as the local accounts. Is there any way to disable or set a higher number of wrong password-tries?

We've tried it with a Passcode Config Profile, but this did not help. Even if you set the number to 11, it still locks down after 1 try. This is pretty annoying, also considering the fact, that those LAPS passwords can be quite easy to mistype one letter.

Kind regards,

Dario


The 1-minute lockout is likely due to macOS default security settings. You can modify the failed login attempt policies using the pwpolicy command. Unfortunately, MDM profiles like Passcode Config don't control this behavior directly.