Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

IBM C1000-130 Exam - Topic 3 Question 79 Discussion

An account lockout policy can be created when setting up an LDAP server for the Cloud Pak for Integration platform. What is this policy used for?
D) It restricts access to the account if multiple login attempts fail.
A) It warns the administrator if multiple login attempts fail.
B) It prompts the user to change the password.
C) It deletes the user account.

IBM C1000-130 Exam - Topic 3 Question 79 Discussion

Actual exam question for IBM's C1000-130 exam
Question #: 79
Topic #: 3
[All C1000-130 Questions]

An account lockout policy can be created when setting up an LDAP server for the Cloud Pak for Integration platform. What is this policy used for?

Show Suggested Answer Hide Answer
Suggested Answer: D

In IBM Cloud Pak for Integration (CP4I) v2021.2, when integrating LDAP (Lightweight Directory Access Protocol) for authentication, an account lockout policy can be configured to enhance security.

The account lockout policy is designed to prevent brute-force attacks by temporarily or permanently restricting user access after multiple failed login attempts.

How the Account Lockout Policy Works:

If a user enters incorrect credentials multiple times, the account is locked based on the configured policy.

The lockout can be temporary (auto-unlock after a period) or permanent (admin intervention required).

This prevents attackers from guessing passwords through repeated login attempts.

Why Answer D is Correct?

The policy's main function is to restrict access after repeated failed attempts, ensuring security.

It helps mitigate brute-force attacks and unauthorized access.

LDAP enforces the lockout rules based on the organization's security settings.

Explanation of Incorrect Answers:

A . It warns the administrator if multiple login attempts fail. Incorrect

While administrators may receive alerts, the primary function of the lockout policy is to restrict access, not just warn the admin.

B . It prompts the user to change the password. Incorrect

An account lockout prevents login rather than prompting a password change.

Password change prompts usually happen for expired passwords, not failed logins.

C . It deletes the user account. Incorrect

Lockout disables access but does not delete the user account.

IBM Cloud Pak for Integration (CP4I) v2021.2 Administration Reference:

IBM Cloud Pak for Integration Security & LDAP Configuration

IBM Cloud Pak Foundational Services - Authentication & User Management

IBM Cloud Pak for Integration - Managing User Access

IBM LDAP Account Lockout Policy Guide


Contribute your Thoughts:

0/2000 characters
Amie
9 hours ago
Agreed! D is definitely the right choice. Security is key.
upvoted 0 times
...
Nell
6 days ago
I think it's D. It makes sense to restrict access after failed attempts.
upvoted 0 times
...
Martha
11 days ago
Are we sure it doesn't delete accounts? That sounds extreme!
upvoted 0 times
...
Hester
16 days ago
I think it can also help with security breaches.
upvoted 0 times
...
Antonio
2 months ago
Wait, I thought it just warned admins?
upvoted 0 times
...
Kathrine
2 months ago
Totally agree, option D is the right one!
upvoted 0 times
...
Teresita
2 months ago
It's mainly to restrict access after failed attempts.
upvoted 0 times
...
Tuyet
3 months ago
Yeah, it's all about security with failed logins.
upvoted 0 times
...
Soledad
3 months ago
Wait, can it really delete accounts? That sounds extreme!
upvoted 0 times
...
Vallie
3 months ago
Agree, option D is the right one here.
upvoted 0 times
...
Jettie
3 months ago
I thought it just warned admins, not locked accounts!
upvoted 0 times
...
Bernadine
3 months ago
It's definitely used to restrict access after failed attempts.
upvoted 0 times
...
Aimee
3 months ago
I’m a bit confused; could it be that the policy also prompts for a password change? I need to double-check my notes on this.
upvoted 0 times
...
Britt
4 months ago
I feel like this question is similar to one we practiced about security measures in LDAP. I think D is definitely the right choice.
upvoted 0 times
...
Dalene
4 months ago
I remember studying this, but I'm not entirely sure if it also warns the admin about failed attempts. Was that part of the policy?
upvoted 0 times
...
Elliot
4 months ago
I think the account lockout policy is meant to restrict access after several failed login attempts, so I would lean towards option D.
upvoted 0 times
...

Save Cancel