<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D51Y00005lFCBnSAOOkta Classic EngineSingle Sign-OnAnswered2024-04-16T13:03:23.000Z2018-12-03T19:02:19.000Z2018-12-07T00:14:01.000Z
  • t5lcb (t5lcb)

    It looks like we're having a similar problem that just started today with one of our users.

  • Hi, the best approach is to get the IP of the auth request for the Office363 endpoint from the logs and add it into the BlockedIpzone in Okta. This way the "attacker" will be presented with a 403 when accessing the Okta login.

    The other option is to disabled users pop/imap services from office365. Implementing softlock, where users account is automatically unlock after a x number of minutes will help the user gain access to the account without helpdesk intervention.

    Expand Post
This question is closed.
Loading
user keeps locking due to a brute force attempt from random IPs