As part of our compliance review, a question came up about account lockout. Why isn't this feature part of a Hudu Cloud instance. Rogue users trying to login, IPs as a min should be blocked with the ability to be blacklisted. Yes we can lockdown IP but this should be expanded upon. Also when creating portal members, 2FA should be mandatory when setting up as sometimes this can be missed.