Security settings
For reasons of security, you can configure the session length for merchants and customers as well as the maximum number of sign-in attempts. The various fields have the following meanings:
Table 12: Security settings fields
Field name
|
Description
|
Field type
|
Example
|
Session Expires After
|
Here, you set how long a session can last before being automatically ended by the system. The clock starts when the user signs in. For users without a login, the clock starts the moment they add something to the shopping basket.
|
Entry field, numeric
|
720
|
Possible Login Attempts
|
Number of attempts to sign in the system permits.
|
Entry field, numeric
|
3
|
Timed Login Block
|
Length of time for which the system is inaccessible after the maximum number of sign-in attempts has been exceeded.
|
Entry field, numeric
|
15
|
This reduces the probability that unauthorized persons gain access to the system through repeated sign-in attempts. For effective protection, the values in both fields must be in a useful relation. For example, you could set up the system to deny access for 15 minutes for a particular user name after 3 unsuccessful sign-in attempts.
Note:
If the field does not contain a value, the safety feature is not active.