Staff Member Locked Out

Discuss your pilot or production implementation with other Zimbra admins or our engineers.
Post Reply
rachelahlmann
Posts: 2
Joined: Fri Aug 31, 2018 8:11 pm

Staff Member Locked Out

Post by rachelahlmann »

One of our staff members gets locked out of her email at least once an hour. This requires the administrator to have to change her status to "active" every hour or so. Any idea what is going on here?

Rachel
User avatar
DavidMerrill
Advanced member
Advanced member
Posts: 126
Joined: Thu Jul 30, 2015 2:44 pm
Location: Portland, ME
ZCS/ZD Version: 8.8.15 P19
Contact:

Re: Staff Member Locked Out

Post by DavidMerrill »

Something is locking the mailbox:

• How is the user accessing their mail? Web based, IMAP-client? Do they have a mobile device configured? Maybe they've got a device where they've simply haven't updated the password?
• A lockout every hour could imply someone is trying to brute-force the account (What are the related-COS settings? When should a lock-out occur?)
• Check authentication attempts (run the following at the CLI (see which mailbox is authenticating "a lot"): grep sasl_user /var/log/zimbra.log | sed 's/.*sasl_username=//g' | sort | uniq -c | sort -nr | head)
• Troll the logs, Zimbra is reasonably verbose, you might very well see something related to the mailbox that'll get you going in the right direction.
___________________________________
David Merrill - Zimbra Practice Lead
OTELCO Zimbra Hosting, Licensing and Professional Services
Zeta Alliance
Post Reply