Loading...
Online help

Security settings »

How to maximize the security of your account?

For My DSO Manager, the security of your data is a top priority. In addition to our secure infrastructure (HTTPS/TLS connections, Dedicated Servers, Firewall, ...), several features help strengthen the protection of your access and data.

Access and configuration


These options can be configured from the Settings section of your account.
secure-account


Main Admin can enable these options depending on their access level:
  • Multi-level: applies to all users linked to the Multi-entity access.
  • Entity-level: applies only to users of the selected entity.

Available security settings


  • Allow access only from specific IP addresses
    Restrict platform access to a list of authorized IP addresses. When a new IP address attempts to connect, a validation code is sent by SMS to the administrator or concerned user.
     
  • Force password change
    Requires each user to change their password at a defined frequency (for example, every 30 days). The password must contain at least 9 characters, including letters, numbers, one uppercase letter, and a special character.
     
  • Automatically deactivate inactive users
    Automatically disables accounts that have not accessed the platform for a defined number of months.
     
  • Enable two-factor authentication (2FA)
    Adds an additional authentication step using a code generated from a mobile app, in addition to the password.
    "How to enable two-factor authentication?"
     
  • Specific to Entity-level access

  • Access restriction based on user roles
    Limit data visibility according to user roles. "How to restrict access for specific roles?"
    • Collector role: access limited to customers they manage.
    • Sales role: access limited to customers assigned to them.
    • Sales Administration role: access limited to customers assigned to them.
    • Guest role: access limited to assigned customers.

  • Expiration of links in the interactive emails
    Define a validity period for links contained in interactive emails.
     
  • Expiration of links to your EDM (Electronic Document Management) Set a validity period for links providing access to hosted documents (PDF invoices, supporting documents, etc.).

Good to know
  • 2FA and SSO (Single Sign-On) can be combined to further strengthen security.
  • In case of failed login attempts:
    • Account blocked for 1 hour after 5 failed attempts.
    • IP address blocked for 24 hours after 10 failed attempts.
← Back : Online help » Various questions