> Source: [sk117157](https://support.checkpoint.com/results/sk/sk117157)

# sk117157 - New User can not login to WebUI or SSH

| Property | Value |
|----------|-------|
| Solution ID | sk117157 |
| Date Created | 2017-05-03 |
| Last Modified | 2017-05-11 |
| Technical Level | Advanced |
| Products | Security Gateway, Security Management Server |
| Versions | R82.10, R82, R81.20, R82.10, R82, R81.20, R82.20 |
| OS | Gaia |

## Symptoms

- * a new user created in WebUI, is not able to login to WebUI or SSH.
* Var/log/messages show the following:  
  `
  (httpauth: pam_dof_tally(httpd:auth): user `(0) tally 29, deny 3)  
  sshd[PID]: Invalid user from X.X.X.X  
  sshd[PID]: input_userauth_request: invalid user   
  sshd[PID]: pam_unix(sshd:auth): check pass; user unknown  
  sshd[PID]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=X.X.X.X  
  sshd[PID]: Failed password for invalid user from X.X.X.X port XXXXX ssh2  
* Other users can login successfully.

## Cause

It is an expected behaviour for the kind of settings done under the policy password.

In the WebUI \> User Management \> Password Policy, 'Deny access after failed login attempts' is enabled, and the 'Allow access again after time' was set to high value (e.g. 608400 seconds).

User has passed the maximum number of failed login attempts.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
