We are experiencing users Arcot profile randomly getting locked after we rolled out group based org. Users are getting locked out from OTP credential.
Release : 9.1
Component : Webfort( Strong Authentication)
Users can lock out from the OTP credential if they input wrong OTP multiple times which is beyond the threshold, In that case the user has to be unlocked from the Admin console or Auto Unlock feature can be enabled from the Authentication profile. User can also lock out if the OTP expired before they use it unknowingly beyond threshold e.g. if the OTP validity is set to 30 seconds, the email itself with OTP may arrive in 30 seconds and by the time the OTP will be expired and if used multiple times will lock the credential. In this scenario you can increase the validity from below screen.