User settings

ENVIRONMENT: Datto Partner Portal

This article describes the User Settings page in the Datto Partner Portal. From this page, you can do the following:

  • Set up the Multifactor Authentication (mfa) app.
  • Change your personal information including your name, email and phone number.
  • View all user accounts to which you have access - an asterisk (*) indicates the account to which you are currently logged in.

mceclip0.png
Figure 1: The User Settings page

Refer to How do I set up an external authenticator app for Datto Partner Portal? for more information.

How to...

Account security and lockout policies

To protect your organization and prevent unauthorized access, the Datto Partner Portal enforces automated security policies for failed login attempts and account inactivity.

IP lockout policies

Repeated incorrect login attempts originating from the same IP address trigger temporary access restrictions:

  • Short-Term lockout: Entering 15 incorrect login attempts within 30 minutes temporarily blocks authentication attempts from that IP address for 30 minutes.
  • Extended lockout: Reaching 45 incorrect login attempts within a 24-hour window blocks authentication attempts from that IP address for 24 hours.

NOTE  IP lockouts apply specifically to the network IP address submitting credentials, not the user account itself. Once the lockout duration elapses, users on that network may attempt authentication again.

Account inactivity policy

  • Automatic inactive user disabling: User accounts with no recorded login activity for 90 consecutive days are automatically disabled.
  • Reactivation: To restore access to a disabled account, contact an organization Partner Portal Administrator to re-enable the user profile.

Troubleshooting locked or disabled accounts

If you or a team member are unable to log in due to failed attempt thresholds or extended inactivity, use the following recovery steps:

Resolving IP lockouts

  • Wait for the lockout timer to expire:
    • For 15 failed attempts in 30 minutes: Wait 30 minutes before attempting to sign in again.
    • For 45 failed attempts in 24 hours: Wait 24 hours from the last failed attempt.
  • Connect via an alternate network or VPN: Because lockouts apply to the originating IP address rather than individual user credentials, switching to a different secure network, mobile hotspot, or VPN allows immediate login attempts.

  • Disable automated credential auto-fill: Ensure that browser password managers or background automation tools are not repeatedly posting expired credentials.

  • Reset password before re-attempting: If unsure of the current password, use the Forgot Password workflow on the login page to set a new password prior to testing credentials, avoiding extended 24-hour lockout thresholds.

Resolving inactive (disabled) accounts

  • Contact your Partner Portal Administrator: Accounts disabled due to 90 or more days of inactivity cannot be self-reactivated. An administrator must navigate to user management and re-enable the account.
  • Verify email confirmations: Following reactivation, complete any required email verification or password reset links sent to your registered inbox.

If your IP address remains blocked after the lockout period has expired, or if your administrator is unable to reactivate your user account, contact Kaseya Support for further assistance.

________________________________________