Salesforce User Logins Test

It is important for Salesforce administrators to track user logins to a Salesforce organization, as it will help them swiftly capture logon failures. Additionally, by monitoring user logins, administrators will also be able to swoop down on users whose password is locked. This in turn will shed light on suspicious login attempts to Salesforce. The Salesforce User Logins test reveals such login attempts to administrators.

This test monitors user logins to a Salesforce organization, and promptly alerts administrators to login failures. Administrators are also notified if any user got locked out owing to multiple invalid login attempts or if any user account was frozen before deactivation. Detailed diagnostics reveal who these users are. This way, administrators are enabled to rapidly detect and avert potential security threats to a Salesforce organization.

Target of the test : A Salesforce organization

Agent deploying the test : A remote agent.

Outputs of the test : One set of results for the Salesforce organization being monitored

Configurable parameters for the test
Parameters Description

Test Period

How often should the test be executed.

Host

The host for which the test is to be configured.

Email

This test needs to login to the target Salesforce organization as a user with Administrative rights, in order to run API commands on it and pull metrics. To facilitate this connection, specify the email ID of the Administrator of the Salesforce organization here.

Password

Specify the password of the Administrator here.

Confirm Password

Confirm the administrator password by retyping here.

Detailed Diagnosis

To make diagnosis more efficient and accurate, the eG Enterprise embeds an optional detailed diagnostic capability. With this capability, the eG agents can be configured to run detailed, more elaborate tests as and when specific problems are detected. To enable the detailed diagnosis capability of this test for a particular server, choose the On option. To disable the capability, click on the Off option.

The option to selectively enable/disable the detailed diagnosis capability will be available only if the following conditions are fulfilled:

  • The eG manager license should allow the detailed diagnosis capability
  • Both the normal and abnormal frequencies configured for the detailed diagnosis measures should not be 0.
Measurements made by the test
Measurement Description Measurement Unit Interpretation

Users recently logged in

Indicates the number of users who logged in during the last measurement period.

Number

 

Failed logons

Indicates the number of users whose logon failed.

Number

Ideally, the value of this measure should be 0. A non-zero value indicates that one/more login attempts failed. To know which user logins failed, use the detailed diagnosis of this measure.

Frozen logons

Indicates the number of user logons that is frozen.

Number

In some cases, an administrator may not be able to immediately deactivate an account, such as when a user is selected in a custom hierarchy field. To prevent users from logging in to your organization while the administrator performs the steps to deactivate them, the user accounts can be deactivated.

Use the detailed diagnosis of this measure to know which user accounts are frozen.

Password locked users

Indicates the number of users whose password is locked.

Number

A user will become locked by violating the maximum invalid login attempts setting (defined in password policies).

A user can become unlocked either by an administrator manually unlocking the user or by waiting for the lockout effective period to pass.

To know which user accounts are locked, use the detailed diagnosis of this measure.