Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Layer

Description

Password Management

This encompasses the creation and enforcing of strong passwords, failed logon limits, password history, and account lockouts.

Role Based Permissions

Granular permissions can be configured through the admin portal which indicate which define applicable access control rights for login users

Authentication of User Traffic

Encrypt (via SSL) and authenticate user traffic between the client browser and the web server hosting the Admin Portal. Prevent username and passwords from being sent in plain text across the internet.

Firewall Protection

Require all LogiSense system administration staff to VPN and authenticate with the network prior to accessing any parts of the infrastructure.

...

Encryption is performed where necessary in the platform to ensure that sensitive information is protected. Multiple options are provided for password security in the Admin Portal. Password parameters such as minimum password length and rules can be configured on a per role basis. Mechanisms are provided via the admin portal to reset passwords where necessary: for example, if a password times out of or expires.

LogiSense supports a client server architecture where the client web portal communicates with the backend server over the network. To ensure that the communications between client and server is authenticated and to support the privacy and integrity of the exchanged data, LogiSense enforces the HTTPS communications. HTTPS provides bidirectional encryption of communications between the LogiSense portal and Amazon hosted server, which protects against eavesdropping and tampering.

...