5.1

Table Of Contents
12 To define an account lockout policy, select Enable next to Account Lockout Policy.
a In Retry Count, type the number of times a remote user can try to access his or her account after
entering an incorrect password.
b In Retry Duration, type the time period in which the remote user's account gets locked on
unsuccessful login attempts.
For example, if you specify Retry Count as 5 and Retry Duration as 1 minute, the remote user's
account will be locked if he makes 5 unsuccessful login attempts within 1 minute.
c In Lockout Duration, type the time period for which the user account remains locked. After this time,
the account is automatically unlocked.
13 Select Enabled or Disabled to indicate whether the server is enabled.
14 Select Use this server for secondary authentication if you want to use this server as the second level of
authentication.
Select Terminate Session if authentication fails if required.
15 Click OK.
Add SSL VPN-Plus Server Settings
You must add SSL VPN server settings to enable SSL on a vShield Edge interface.
Procedure
1 In the vSphere Client, select Inventory > Hosts & Clusters.
2 Select a datacenter resource from the inventory panel.
3 Click the Network Virtualization tab.
4 Click the Edges link.
5 Double-click a vShield Edge instance.
6 Click the Edges tab.
7 Click the VPN tab.
8 Click the SSL VPN-Plus tab.
9 In the Configure panel, click Server Settings.
10 Click Change.
The Change Server Settings dialog box opens.
11 Select the vShield Edge interface on which you want to enable SSL VPN-Plus. Select ANY - 0.0.0.0 to enable
SSL VPN-Plus on all interfaces of the selected vShield Edge.
12 Edit the port number if required. This port number is required to configure the installation package.
13 Select the encryption method.
14 (Optional) From the Server Certificates table, select the server certificate that you want to add.
15 Click OK.
What to do next
Enable the SSL VPN service.
Chapter 9 vShield Edge Management
VMware, Inc. 119