All Products
Search
Document Center

Cloud Config:Maximum retry attempts in RAM user password policy meets requirements

Last Updated:Sep 30, 2025

When the maximum retry attempts in the RAM user password policy meets the specified parameter requirements, it is considered "compliant".

Scenarios

The administrator sets a password policy for RAM users, limiting the maximum retry attempts to 5 times to ensure account security and prevent unauthorized access due to brute-force attack attempts.

Risk level

Default risk level: high.

You can change the risk level as needed.

Detection logic

When the maximum retry attempts in the RAM user password policy meets the specified parameter requirements, it is considered compliant. The default detection is set to a maximum of 5 retry attempts.

Rule details

Parameter

Description

Rule name

Maximum retry attempts in RAM user password policy meets requirements

Rule identifier

ram-password-max-login-attemps-check

Automatic remediation

Not supported

Trigger type

Periodic: Every 24 hours

Supported resource types

ACS::::Account

Input parameters

maxLoginAttemps (Default value: 5)

Remediation guidance

For more information, see Set a password policy for RAM users.