tencent cloud

All product documents
Cloud Virtual Machine
VNC Login Error (Login Failed with Correct Password)
Last updated: 2024-01-06 17:32:18
VNC Login Error (Login Failed with Correct Password)
Last updated: 2024-01-06 17:32:18

Problem

When you try to log in to the CVM via VNC, the following message appears even you enter the correct password. Later, you are required to enter the account name again.

And when you try to log in remotely using the SSH key, the message Permission denied, please try again appears.


Common Cause

The /var/log/btmp log file is oversized due to brute force attacks. This file keeps logs of failed logins. If it is too large, logs can not be written into it, which may cause login error.


Solutions

1. Check whether the /var/log/btmp log file is oversized as instructed in Troubleshooting Procedure.
2. Confirm whether it is caused by brute force attacks and improve security policy.

Troubleshooting Procedure

If the login succeeds, proceed to the next step.
If the login fails, try the single user mode. For detailed directions, see Booting into Linux Single User Mode.
2. Access /var/log and check the size of the /var/log/btmp log file.
3. Run the following command to clear the oversized /var/log/btmp log file. Then you can log in normally.
cat /dev/null > /var/log/btmp
4. Check whether the account lock is caused by misoperations or brute force attacks. In the later case, it is recommended to strengthen the security policy as follows:
Change the CVM password to a stronger password containing 12-16 characters, including uppercase letters, lowercase letters, special characters, and numbers. For more information, see Resetting Instance Password.
Delete unused CVM login accounts.
Change the default sshd port 22 to a less common port between 1024-65525. For more information, see Modifying the Default Remote Port of CVM.
Manage the associated security group rules to open only ports and protocols required by your business. For more information, see Adding Security Group Rules.
Close the port for internet access for core applications such as MySQL and Redis databases.
Install security software (such as CWPP agent), and configure real-time alarms to get noticed about suspicious logins instantly.
Was this page helpful?
You can also Contact Sales or Submit a Ticket for help.
Yes
No

Feedback

Contact Us

Contact our sales team or business advisors to help your business.

Technical Support

Open a ticket if you're looking for further assistance. Our Ticket is 7x24 avaliable.

7x24 Phone Support
Hong Kong, China
+852 800 906 020 (Toll Free)
United States
+1 844 606 0804 (Toll Free)
United Kingdom
+44 808 196 4551 (Toll Free)
Canada
+1 888 605 7930 (Toll Free)
Australia
+61 1300 986 386 (Toll Free)
EdgeOne hotline
+852 300 80699
More local hotlines coming soon