PowerProtect Data Manager:用户界面管理员用户因登录尝试失败而被锁定

Summary: PowerProtect Data Manager 19.15:由于多次登录尝试失败,管理员用户被锁定,无法登录。

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

- 在 ECDM UI 日志中:

  Body: {
    code: 423,
    reason: 'Account is locked due to multiple unsuccessful login attempts.'
    remediation: 'Please try again in 5 minutes or contact your administrator.'

- 在aaa.log

2024-05-11T21:15:57.095Z INFO [] [https-jsse-nio-9090-exec-4] [][][][TRACE_ID:a9f380e334aa8f14][] [c.e.b.a.s.c.ControllerExceptionHandler.responseEntity(251)] - com.emc.brs.aaa.server.exception.LoginRequestException: {"code":401,"reason":"Unauthorized login request for user 'admin'.","remediation":"Check to ensure that the login credentials are correct.","details":["If problem persists, reset password for user 'admin'."]}
com.emc.brs.aaa.server.exception.LoginRequestException: Unauthorized login request for user 'admin'.: If problem persists, reset password for user 'admin'.

- 在Zuul.log

2024-05-11T21:00:25.265Z INFO [] [https-jsse-nio-8443-exec-15571] [00000000-0000-4000-a000-000000000000][][][][] [c.e.b.z.f.p.AuthenticationFilter.checkCertificate(334)] - Found Certificate for Agent tamppdmrep01.tamkeen.local
2024-05-11T21:00:25.265Z INFO [] [https-jsse-nio-8443-exec-15571] [00000000-0000-4000-a000-000000000000][][][][] [c.e.b.z.f.p.AuthenticationFilter.processLogin(381)] - Redirecting certificate login for tamppdmrep01.tamkeen.local/2bc98750-7675-0136-29e9-5bbd3ce729b0


 - 运行以下命令以获取登录尝试来自的 IP 地址列表(如果必须,请更改搜索中的日期)

# cd /var/log/brs/zuul
# zgrep -i 'login' zuul.2024-* | awk -F remoteHost '{ print $2 }' | sort | uniq -c
   3683  10.4.157.200, uri /api/v2/login
    763  10.4.128.200, uri /api/v2/login
    190  127.0.57.200, uri /api/v2/login

Cause

  • 管理员帐户被锁定,因为与 DPA IP 地址对应的特定 IP 地址有太多尝试。
  • 在 DPA 中,创建了一个用于连接到 PowerProtect Data Manager 的凭据。在本例中,它是具有相同密码的“admin”。该密码已在 DPA 中更改,但未更新。必须使用正确的密码更新 DPA 中的该凭据。

Resolution

  • 在 DPA UI 中,导航到System SettingsCredentials>...编辑用于 PPDM 连接的密码并更新密码。 
  • 如果您在 PowerProtect Data Manager UI 中使用用户名和密码的凭据登录,则 DPA 登录也使用凭据。建议为 DPA 登录创建新凭据,这样不会影响 PowerProtect Data Manager UI 登录。  为此,请参阅相关的 Data Protection Advisor 文档。
Article Properties
Article Number: 000226331
Article Type: Solution
Last Modified: 08 Apr 2025
Version:  1
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.