While I was poking around, I happened to notice a few users with FAILED
checks and [Rogue Client] appended to their username. Subsequent logins
show success. Can I safely assume these individuals are trying to use some
other means to gain access through CA? I don't want to disable their id if
there could be some other explanation.