Users are randomly getting locked for OTP after implementing the Group based organization in Advanced Authentication
search cancel

Users are randomly getting locked for OTP after implementing the Group based organization in Advanced Authentication

book

Article ID: 246987

calendar_today

Updated On:

Products

CA Strong Authentication CA Advanced Authentication

Issue/Introduction

We are experiencing users Arcot profile randomly getting locked after we rolled out group based org. Users are getting locked out from OTP credential.

Environment

Release : 9.1

Component : Webfort( Strong Authentication)

Resolution

Users can lock out from the OTP credential if they input wrong OTP multiple times which is beyond the threshold, In that case the user has to be unlocked from the Admin console or Auto Unlock feature can be enabled from the Authentication profile. User can also lock out if the OTP expired before they use it unknowingly beyond threshold e.g. if the OTP validity is set to 30 seconds, the email itself with OTP may arrive in 30 seconds and by the time the OTP will be expired and if used multiple times will lock the credential. In this scenario you can increase the validity from below screen.