Introduction

The Unlock Account Service is a web portal that allows users to unlock their locked account.

Before the service can be made available for the users, there are some necessary preparations that must be performed;

Setting up the Logon Procedure and Logon Steps

The Logon Procedure defines how users will be authenticated when they attempt to login to the portal. You can define a logon procedure of 1-step, 2-step and 3-step verification, for instance.

The Unlock Account Service logon procedure can be prepared using the following procedure;

Setting up the Application

In the Admin Console, navigate to "Authentication | Applications", then select the application "Unlock Account Service";

The application named "Unlock Account Service" is pre-defined during installation (so you would not normally need to make changes to this default setup), however the application parameters can be inspected using the context menu.

Setting up the Realm

A Realm is a group of user domains. It defines who is allowed to access the application that's associated with the realm "Unlock Account Service", and the portal can only be accessed from the domains that are specified against this realm.

The domains for the realm "Unlock Account Service" can be specified using the following procedure;

Setting up the Policy Settings

Lockout policies define how many failed logon attempts users can make before the system locks the associated user account.

Allow users to unlock accounts using the Unlock Account Service

Use the following procedure to allow users to allow users to unlock their accounts using the Unlock Account service;

Lockout Policy Settings

As well as policy settings for the unlock account service, we also have policy settings that specify Lockout settings;

Amongst other things, this policy will allow you to specify how many times a user may fail to login (before the account is locked), and how long lockout occurs.