"Signon Password Failure Limit" Profile Option Does Not End Date User in FNDSCAUS Form
(Doc ID 332577.1)
Last updated on FEBRUARY 11, 2019
Applies to:Oracle Application Object Library - Version 22.214.171.124 to 12.2.7 [Release 11.5 to 12.2]
Information in this document applies to any platform.
***Checked for relevance on 26-Nov-2012***
***Checked for relevance on 26 Jul 2013***
***Checked for relevance on 02 Feb 2015***
***Checked for relevance on 10 Sep 2016***
***Checked for relevance on 1 Jul 2018***
Users can continue to attempt to login continually even if the "Signon Password Failure Limit" profile option is set. The end date for the user does not become end dated and there is no indication in the Users form (FNDSCAUS.fmb) that the user account is locked.
Run this SQL to verify if the user is locked:
SELECT DECODE (encrypted_user_password
, 'INVALID', 'Account locked'
, 'Account not locked')
WHERE user_name = '&username';
If the encrypted_user_password is invalid then the user the account is locked.
Steps to reproduce:
Create a user, assign a password, assign responsibilities.
Set the Signon Password Failure Limit profile option e.g. 5.
Login to applications as the user and follow the prompts for resetting the password.
Login again using an incorrect password and receive the following error message:
"Login failed. Please verify your login information or contact the system administator."
Continue attempting to login using an incorrect password for 5 times.
The error still appears and the FNDSCAUS form shows that user is not end dated.
The user can still login using the correct password.
Applied ATG PF CU2 <patch:4125550> or <patch:4083215>.
To view full details, sign in with your My Oracle Support account.
Don't have a My Oracle Support account? Click to get started!
In this Document