Security settings

For reasons of security, you can configure the session length for merchants and customers as well as the maximum number of sign-in attempts. The various fields have the following meanings:
Table 12: Security settings fields

Field name
Description
Field type
Example
Session Expires After
Here, you set how long a session can last before being automatically ended by the system. The clock starts when the user signs in. For users without a login, the clock starts the moment they add something to the shopping basket.
Entry field, numeric
720
Possible Login Attempts
Number of attempts to sign in the system permits.
Entry field, numeric
3
Timed Login Block
Length of time for which the system is inaccessible after the maximum number of sign-in attempts has been exceeded.
Entry field, numeric
15

This reduces the probability that unauthorized persons gain access to the system through repeated sign-in attempts. For effective protection, the values in both fields must be in a useful relation. For example, you could set up the system to deny access for 15 minutes for a particular user name after 3 unsuccessful sign-in attempts.
Note: If the field does not contain a value, the safety feature is not active.