windows – ActiveDirectory lockout after 5 retries, are clients internally doing multiple attemps per each authentication?


I’m facing an issue when my application tries to authenticate a user, calling the ADsOpenObject (WinNT provider) on a customer’s network. After the first authentication attempt entering wrong credentials, the account is locked out for 10 minutes. The same application, running into other customers network, hasn’t this problem. I asked the customer IT to check the security policies and it was told me that the lockout is set to five wrong attempts, not to one. Then, I am wondering if the AdsOpenObject function itself is internally issuing multiple attempts in authenticate and, if so, how it’s possible to set the number of attempts per function call, because I don’t see such setting into my code.