Understanding account lockout rules in Nutrient Workflow

Nutrient Workflow includes a built-in login lockout escalation policy to protect against brute force attacks. The system automatically locks user accounts after repeated failed login attempts.

How the lockout policy works

The lockout escalation policy progressively increases lockout duration after repeated failed login attempts:

  • After multiple failed login attempts, the system temporarily locks the account
  • Each subsequent series of failed attempts increases the lockout duration
  • This progressive approach deters automated login attempts while minimizing inconvenience for users who mistype their password

Key benefits

  • Brute force protection — Prevents attackers from repeatedly guessing passwords
  • Automated deterrence — Progressive lockout durations discourage automated attack tools
  • User-friendly — Short initial lockouts accommodate occasional typos while still providing security

Configuration

The lockout escalation policy is a built-in security feature and doesn’t require manual configuration. Nutrient Workflow automatically applies this policy to all user accounts to ensure consistent security across your organization.

For information on configuring password requirements, refer to the password settings guide.