...
Prior to account suspension, set up the notification system to send a warning notification to the user announcing that the account will be suspended. For instance, if a user has not logged in to his/her account for 90 days, the user can be notified that his their account will be suspended within the next 7 days if there continues to be no activity, after which, the account will be suspended.
Note |
---|
Note:
Once an account is suspended, only an administrative user can unlock the account. |
Setting up account suspension notifications
...
- Start the WSO2 IS and log into the management console using your tenant credentials.
- Click Resident under Identity Providers found in the Main tab. Expand the Login Policies tab.
- Expand the Account Locking tab and select the Account Lock Enabled checkbox. Click Update to save changes.
Expand the Account Management Policies tab.
Expand the Lock Idle Accounts tab and select Enable. Fill in the following fields and click Update.
Field Description Sample Value Lock Account After This specifies the total number of days after which the account will be locked. In this case, if the account is idle for 90 days, it will be locked. 90 Alert User in This specifies the number of days (in a comma separated list) after which the user is sent a warning notification informing him/her them that the account is about to be locked. In this case, the user will receive multiple notifications, one notification after 30 days, the next after 45 days etc. Finally if it reaches 90 days with no activity from the user, the account will be locked. 30,45,60,75
Tip | ||
---|---|---|
| ||
If you want to troubleshoot this feature, add the following property to the
|
Panel | ||
---|---|---|
| ||
By default, the claim values of the identity claims used in this feature are stored in the JDBC datasource configured in the |