Comment 11 for bug 1688137

Revision history for this message
Lance Bragstad (lbragstad) wrote : Re: Attacker may use PCI-DSS 8.1.6 and 8.1.7 to lock out users indefinitely

I would agree - I think emitting notifications in this case is fine.