Showing results for 
Search instead for 
Did you mean: 
Sign up Log in
Deleted user
0 / 0 points
badges earned

Your Points Tracker
  • Global
  • Feed

Badge for your thoughts?

You're enrolled in our new beta rewards program. Join our group to get the inside scoop and share your feedback.

Join group
Give the gift of kudos
You have 0 kudos available to give
Who do you want to recognize?
Why do you want to recognize them?
Great job appreciating your peers!
Check back soon to give more kudos.

Past Kudos Given
No kudos given
You haven't given any kudos yet. Share the love above and you'll see it here.

It's not the same without you

Join the community to find out what other Atlassian users are discussing, debating and creating.

Atlassian Community Hero Image Collage

Number of consecutive failed login attempts before account lock out


I checked that there is a security measure in place that will lock your account after multiple, consecutive failed login attempts in this website

Could anyone please advise the number of consecutive failed login attempts before account gets locked out? Does it apply to Confluence/ overall Atlassian services? 

My company would like to know more about Atlassian access control practice.

Thank you for your help very much!

Best regards,






1 answer

1 accepted

1 vote
Answer accepted

Hi @Yeung Ying Ying Debby ,

I think this community post should answer your question - an Atlassian Team member has posted a detailed response - it essentially depends on your setup, whether or not you're using LDAP or other user directories.

Hi  @Callum Carlile _Automation Consultants_

Firstly, Thank you for your prompt response!

Given that we are not using LDAP or any other user directories, I am wondering if Jira/Confluence account will get locked out after 3 failed attempts. 

From the post you provided, it said "JIRA won't technically lock out an internal user account.  By default, after 3 failed attempts it simply requires a CAPTCHA be completed along with the correct password to login. "

Yet, it said "To help protect your Atlassian account, we have have a security measure in place that will lock your account after multiple, consecutive failed login attempts." in the post I mentioned above.

I get a bit confused with these 2 posts. 

@Yeung Ying Ying Debby  Yeah so if you're just using Jira/Confluence's internal directory, then after 3 failed login attempts you will need to complete a CAPTCHA to prove you're not a bot, but your account won't be locked.

I couldn't find your second reference in the above link, but looking at a few other links it seems that there is no locking of accounts for multiple failed login attempts. You can configure the number of failed login attempts reveals the CAPTCHA but I think this is all you can do.

What I would suggest is for your system admins to create a test account, and once it's been logged in successfully, logout and try to login with incorrect credentials. See how many times you can do this to test out if you ever get locked out

Suggest an answer

Log in or Sign up to answer
Community showcase
Published in Jira Service Management

JSM June Challenge #2: Share how your business teams became ITSM rockstars

For JSM June Challenge #2, share how your non-technical teams like HR, legal, marketing, finance, and beyond started using Jira Service Management! Tell us: Did they ask to start using it or...

241 views 7 7
Read article

Community Events

Connect with like-minded Atlassian users at free events near you!

Find an event

Connect with like-minded Atlassian users at free events near you!

Unfortunately there are no Community Events near you at the moment.

Host an event

You're one step closer to meeting fellow Atlassian users at your local event. Learn more about Community Events

Events near you