Showing results for 
Search instead for 
Did you mean: 

brute force attack - Backoffice HAC

Hello, I would like to know if it is possible to configure fruit force attacks for the back office and HAC of hybris.

Version : Hybris 1905



Community Manager
Community Manager
0 Kudos

Thank you for visiting SAP Community to get answers to your questions.

As you're looking to get most out of your community membership, please consider include a profile picture to increase user engagement & additional resources to your reference that can really benefit you:

I hope you find this advice useful, and we're happy to have you as part of SAP Community!

All the best,


Product and Topic Expert
Product and Topic Expert
Unfortunately, it is not possible to configure brute-force attacks for the back office and HAC of Hybris. The Hybris platform does not provide a built-in solution for protecting against brute-force attacks, but there are third-party security solutions available that can be used to protect against brute-force attacks. These include the use of advanced authentication measures such as two-factor authentication (2FA) or multi-factor authentication (MFA) to add an additional layer of security to your back office. Additionally, you can use a web application firewall (WAF) to detect and block malicious requests and protect against brute-force attempts.
0 Kudos

Thank you very much for the answer, I will revise what you suggested. Additionally, I would like to take advantage of this thread to find out if you can configure a password expiration of 90 days and store the password history both in the Backoffice and in the HAC.

Accepted Solutions (0)

Answers (0)