Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The architecture of JOC Cockpit ensures that users are restricted to directly accessing the JOC Cockpit user interface as illustrated in the diagram below. The JOC Cockpit calls the includes the JS7 - REST Web Service API which, in turn, has access to the JS7 Controller instances. There is no connection from the JOC Cockpit to Agents.

See the JS7 - System Architecture article for more information.


Security Considerations for System Administrators

HTTP / HTTPS Connections

As indicated in the schematic architecture diagram above, connections between the JOC Cockpit, the REST Web Service API and the Controllers & Agents can be carried out using both HTTP and HTTPS protocols. By default after installation HTTP will be used. However, system administrators are recommended to implement HTTPS connections.

...

Excerpt Include
JS7 - Audit Log
JS7 - Audit Log
nopaneltrue

Read more ....

Security Considerations for Users

Use of the Log In Form Remember Me Checkbox

...

A user account's password can be reset or changed with the JOC Cockpit if the JS7 - JOC Identity Service is used.

  • When resetting or modifying a user account's password then the user is forced to specify a new password with the next login.
  • This functionality by design is not offered for an the JS7 - LDAP Identity Service or other external Identity Service.

...