Safeguard Reference Manual (G06.24+, H06.03+ )

User Security Commands
Safeguard Reference Manual520618-013
5-31
INFO USER Command
USER-EXPIRES = date, time
is the date and time when this user’s ability to log on to the system will be
suspended (in local civil time). After the USER-EXPIRES command suspends a
user’s ability to log on to the system, changing the users USER-EXPIRES attribute
to some future date restores that ability.
PASSWORD-EXPIRES = date, time
is the date and time when this user’s password will expire. Whenever the user’s
password is changed through the ALTER USER command, the Guardian
PASSWORD program, or the Safeguard logon dialog, the Safeguard software
calculates a new PASSWORD-EXPIRES date by adding the number of days
specified in the user’s PASSWORD-MUST-CHANGE attribute to the date of the
password change. The Safeguard software also calculates a new PASSWORD-
EXPIRES date whenever the user’s PASSWORD-MUST-CHANGE attribute is
changed.
Immediate expiration of the user’s password can also be specified with the
PASSWORD-EXPIRES user attribute.
After a user’s password expires, the user cannot log on to the system until one of
the following actions occurs: the user’s password is changed, the user’s
PASSWORD-EXPIRES date is extended, or the user’s PASSWORD-MUST-
CHANGE period is extended. (If the user has an extension period established with
PASSWORD-EXPIRY-GRACE, that user can log on to change the expired
password.)
date and time are given in local civil time.
PASSWORD-MAY-CHANGE =date, time
specifies the date and time after which users can change their password.
PASSWORD-MUST-CHANGE EVERY = num DAYS
specifies the maximum number of days that this user can use the same password.
PASSWORD-EXPIRY-GRACE = num DAYS
specifies the number of days after password expiration that users can change their
password during logon.
FROZEN/THAWED = frozen | thawed
indicates whether or not a user’s access to the system has been frozen. While a
user’s access to the system is frozen, the user cannot log on to the system.
STATIC FAILED LOGON COUNT = count
is the number of total unsuccessful logon attempts that made with this user’s user
name since it was created. (This count cannot be reset.)