Salesforce.com : Setting Password Policies - 'lockout period >= 30 minutes'

Information

This setting controls the duration of the login lockout after a number of invalid login attempts.

Solution

The lockout value should be set to a value of 30 minutes or longer or forever requiring it be manually unlocked by an administrator.

See Also

http://help.salesforce.com/help/pdfs/en/salesforce_security_impl_guide.pdf

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-7b.

Plugin: Salesforce.com

Control ID: 3f5e5a8c679d4da8584c69968ffeb2b0c2c6508387e6db66ba4a442eca95328b