Set the default parameters for Cryptographic Security Platform Vault user accounts. You can specify:

For example, the following command line example sets the default authentication to local, sets password expiration to 60 days after the account is created or the password is changed, sets the maximum failed login attempts to 4, and sets the minimum password length to 12 characters.

$ hicli user defaults --authentication=local --password_expiry=60 --max_failed_logins=4 --min_passwd_length=12

authentication

The default authentication method: local or ldap. This option affects only newly-created user accounts. It does not change the authentication method for existing accounts.

password_expiry

The number of days before the user's password expires. This option affects only newly-created accounts. It does not change the password expiration date for existing accounts.

max_failed_logins

The number of failed login attempts that can be made before Cryptographic Security Platform Vault disables the user account. This setting affects all user accounts, including existing accounts.

min_passwd_length

The minimum number of characters required in a Cryptographic Security Platform Vault account password. This setting affects all user accounts, including existing accounts.