View a markdown version of this page

max_failed_login_attempts - Amazon Redshift
Services or capabilities described in Amazon Web Services documentation might vary by Region. To see the differences applicable to the China Regions, see Getting Started with Amazon Web Services in China (PDF).

Amazon Redshift will no longer support the use of Python UDFs after June 30, 2026. We will start enforcing it in phases. For more information on the details of Python end of life and migration options, see the blog post that was published on June 30, 2025.

max_failed_login_attempts

Values (default in bold)

5, 2 to 50

Description

Sets the number of consecutive failed password login attempts that Amazon Redshift allows before it locks a database user. When the number of consecutive failed attempts reaches this value, Amazon Redshift locks the user. A locked user remains locked until a superuser or a user with the ALTER USER privilege unlocks them. A successful login resets the counter. This parameter applies to password-based authentication only. Federated users aren't affected.

This parameter is cluster-wide. To set it, you must be a superuser and use an ALTER SYSTEM SET command. You can't change it with the SET command. The change applies without a cluster restart. The valid range is 2 to 50; a value outside this range returns an error.

Example

ALTER SYSTEM SET max_failed_login_attempts = 10;