Loading security settings...
Please wait.

Security Settings

Manage centralized security policies used by authentication, sessions, devices, and risk detection.
Security Policies
All values are stored in the database and applied server-side.
Database Driven
Session Policies

Controls session lifetime and how many sessions are kept for each user.

Session Lifetime

How many hours each active session is extended after activity.

Max Sessions Per User

Only the latest sessions are kept; older ones are closed automatically.

Login Protection

Controls failed login monitoring and risk thresholds.

Failed Login Window

Time window in minutes for counting failed login attempts.

Medium Risk Threshold

Failed attempts count required to mark login as medium risk.

High Risk Threshold

Failed attempts count required to mark login as high risk.

Enable Risk Detection

Stores risk level and risk flags in Security Activity.

Device & Location Security

Controls device tracking and location collection behavior.

Enable Device Tracking

Registers browser/device identity and links sessions to devices.

Enable Location Tracking

Allows protected pages to request browser location for the current session.

Require Trusted Device

When enabled, untrusted devices can be blocked until approved.

© 2026 OCAST Dashboard