Firewall - Login denied: Login attempt on a lockout address [lockout users]

Sometimes you are lock out of a firewall, you can go to console and unblock yourself. This article describe how to see lock out user table and how zou can really unblock the account.

 

Step by step procedure

You can use the following CLI command to unlock the source IP address via console or SSH.

 

Router# show lockout-users

Router# configure terminal

Router(config)# unlock lockout-users W.X.Y.Z

 

Then the IP address W.X.Y.Z will be unlocked in the list.

You can try the password to authenticate with the device again.

 

Verification

After unlocking the address, you will be able to log in to the device again.

 

"Can't unlock user from" issue

 

If you use the show lockout-users command, you will not only see the locked out users, but all failed login attempts. Please look at your 

 

Please take a look at your User IP Lockout Settings to see if the user has reached the maximum login attempts or not. In this case, the failed login attempt was just 1 (from the example above) and therefore, it's not locked out.

 

Articles in this section

Was this article helpful?
10 out of 61 found this helpful
Share