Dive deep on the lockout policy of AWS Cognito
Yes. AWS Cognito does implement a lockout policy by default, but the policy is not public to customer due to security reasons. While I cannot provide specifics of algorithms, I would like to give you some general information about the behaviour that can be expected. Cognito User Pools implements a throttling and backoff mechanism where supplied passwords for a given…
Read More »