To protect against brute force login attacks, Carbon Black Hosted EDR locks a user account after seven consecutive, unsuccessful login tries within a period of 15 minutes.

An account can remain locked for up to 15 minutes. Attempts to log in during the lockout period, with or without the correct credentials, have no effect.

A user can unlock an account before the lockout expires by clicking Forgot your password? and following the prompts to reset the account password.

Note: Carbon Black does not recommend using a group email address for a user account. For such an account:
  • Any person in the group can lock the account with too many failed login attempts. In that case, none of the group members can log in during the lockout period.

  • If someone unlocks the account by changing the password, all other group members must be informed of the password change.