Which security settings are available?
There are several security settings available in i-Reserve. These settings are described below.
Inheritance
Inheritance is intended for users with multiple licenses. If the checkbox for Inheritance is selected in one license, the settings made will be carried over to other licenses.
Value
A value can be assigned to each setting. Inheritance is automatically disabled when the value is changed manually. The value varies per setting. An example of this is the minimum number of digits a password must contain.
Calculated
The calculated value is the actual value used by i-Reserve for the setting.
Action
By using the Default button, all settings will be reset to their default values.
Setting | Description |
---|---|
Minimum number of characters | Minimum number of characters a password must contain |
Minimum number of digits | Minimum number of digits a password must contain |
Minimum number of uppercase letters | Minimum number of uppercase letters a password must contain |
Minimum number of special characters | Minimum number of special characters (e.g. !&@) a password must contain |
Display "Forgot username" on customer pages | Determines whether a "Forgot username" link should be shown on the customer page of the reservation dialog |
Display "Forgot password" (customer pages) | Determines whether a "Forgot password" link should be shown on the customer page of the reservation dialog |
Display "Forgot username" for admin panel | Determines whether a "Forgot username" link should be shown on the login screen of the admin panel |
Display "Forgot password" (admin panel) | Determines whether a "Forgot password" link should be shown on the login screen of the admin panel |
Force password change (Admin panel) | Determines whether the password must be changed upon first login by a new user of the admin panel |
Number of days before password must be changed (Admin panel) | Determines after how many days the password must be changed by a user of the admin panel |
Remember username/password: duration | Sets how long a username and password are remembered; for security reasons, it is recommended to set this to 0 |
Session length | Sets how much time can pass before a user is logged out due to inactivity, in seconds |
CSRF token challenge | i-Reserve includes protection against cross-site scripting; for security, it is recommended to keep this setting set to Yes (active) |
Use secure connections (SSL) | An SSL connection is an encrypted connection between the server and the visitor; for security, it is recommended to keep this setting set to Yes (active) |
After configuring the settings, you must confirm them by clicking the Save button. Once saved, i-Reserve will display a message: Setting saved.