Temporary Authentication Lockout
Evo now has the ability to lock out a user after multiple failed authentication attempts.

If a user were to input their password or OTP incorrectly five (5) times in a row on the Evo Portal/SAML Portal, their account will be locked for 10 minutes. They will be unable to authenticate with the Evo Portal or SAML portal at this time.
NOTE: This does NOT affect/apply to any related authentication attempts on the Evo Credential Provider.
Notifications
When a lockout occurs, an e-mail will be sent to eligible admins who are opted into receiving these e-mails to notify them of locked users. The criteria for this is as follows:
- You have customer access to the same customer where the locked user is
- If you are an admin user
- If you have login lockout notifications enabled (enabled by default)

Administrative users can also opt themselves out of these e-mails by heading to their Profile page and clicking the Edit button to reveal the details drawer and they can toggle the feature off.


Remove Temporary Login Lockout
If the lockout was in error, you can manually disable the lockout by going to the User Details page of the affected user and click the “Remove Temporary Login Lockout” button.
