Console : Configuring Management Settings

Enhanced Security Access Settings
SonicWALL’s Enhanced Security Access (ESA) feature allows for greater granular control of user access across a GMS network, which is applicable for installations that must comply with stringent regulatory compliance and account management controls as found in such standards as Payment Card Industry (PCI), SOX, or HIPPA.
GMS supports these data security standards by providing support for encryption of all passwords and any pre-shared secrets in the database. This includes VPN Security Association pre-shared secrets, encryption keys, authentication keys, and passwords. The following passwords are encrypted in GMS:
Enhanced security compliance also requires a password rotation feature. GMS supports password rotation requirements, including several changes in the management interface. These changes occur on the Console panel, in the Management > Settings screen and in all screens accessed from the Management > Users screen.
To turn on password security enforcement in GMS:
1
In the Management > Settings screen, select Enforce Password Security.
2
In the Number of failed login attempts before user can be locked out field, enter a value. The default is 6.
3
In the User lockout minutes field, enter a value. The default is 30. This is the number of minutes that a user will not be able to log in to GMS after failing to log in correctly for the specified number of attempts.
4
In the Number of inactive days to mark user for deletion field, enter a value. The default is 90. The user’s account will be deleted if it is not used for the specified number of days.
5
In the Number of days to force password change field, enter a value. The default is 90. GMS prompts the user to change his password after the specified number of days.
6
When finished in the Settings page, click Update. To clear the screen settings and start over, click Reset.