Max login attempts for shadow assets

Just wondering, can't find it in manuals or on forums, what happens to user shadow assets if max login attempts is exceeded?  Manual says Matrix will set a user account to Under Construction after X failed login attempts, but my understanding is shadow assets cannot have their status changed.

 

Do shadow assets still get locked out some other way?  Or does the prevailing rules on the authentication system apply (we are using LDAP with no max login attempt restriction - obviously a security problem if we expose it to the outside world).

 

Thanks

Unfortunately you can't, as you can't change status of individual shadow assets. You would possibly be able to lock them out for the session with some dev, but not sure how much effort that would be.