JSI Tip 3608. Windows 2000 does NOT lockout invalid EAP-TLS (Smart card) logon attempts?

Jerold Schulman

April 19, 2001

1 Min Read
ITPro Today logo in a gray background | ITPro Today

When a Smart card, which uses the Extensible Authentication Protocol (EAP) / Transport Layer Security (TLS), submits invalid credentials, account lockout is never invoked, and the account does NOT get locked out?

When other logon types use invalid credentials, and trip the Account Lockout policy, they do get locked out.


Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like