can CAS handle 3-strike scenario?

hua lu sirhualu at yahoo.com
Wed Jan 21 16:22:22 EST 2009


Hi, all,

I am new to CAS. Here is my question:
1. We have a customized encoding java class to encode the password (and this encrypted password is stored in database). Is there anybody can provide a concrete example on how to make it happen in configure this encoder?

2. Can CAS handle 3-strike rule? if a user logged in (with good username, but wrong password) unsuccessfully for more than 3 times, the user shall be displayed with a specific message saying that the account is locked out. Is there any generally mechanism already built in CAS to handle this scenario? What kind of code/configuration change is needed? 

Any help on the above topic is greatly appreciated!

LU



      
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://tp.its.yale.edu/pipermail/cas/attachments/20090121/7563975a/attachment.html 


More information about the cas mailing list