Skip to content
Last updated

Specifying Maximum Login Attempts and Idle Session Timeout

Administrators can specify the maximum times that users can attempt to log in and specify the duration of time a logged-in user can stay logged in without their session timing out.

Idle Session Timeout Feature Overview

The Idle Session Timeout feature enhances security by automatically logging users out after a specified period of inactivity. This feature is essential for organizations in regulated industries that require strict compliance with security standards and data protection protocols.

Key Benefits

  • Enhanced Security - Automatically protects sensitive data when users step away from their workstations
  • Compliance Support - Meets regulatory requirements for healthcare, pharmaceutical, and other regulated industries
  • Customizable Settings - Flexible timeout options to match your organization's security policies
  • User-Friendly Warnings - Advance notifications before automatic logout occurs.

Configuration

The default value for session timeout is the fixed period session timeout of 1 week and no idle session timeout.

For enhanced security, it’s highly recommended that you configure both the idle and maximum session timeout settings. For example, consider a maximum session timeout of one week and an idle session timeout of 30 minutes. In this scenario, a session will expire after one week regardless of activity, requiring the user to log in again. Additionally, if a user is inactive for 30 minutes, the session will time out. Only administrators can edit Login Configuration.

  1. Open Treasure AI Web Console.

  2. Navigate to Control Panel > Security > Sign-In Settings.

    Sign-In Settings page showing the Control Panel, Security, and Sign-In Settings navigation path

  3. If prompted, re-enter your password to confirm your identity.

  4. Select the edit pen for Login Configuration.

    Login Configuration with the edit pen selected

  5. Select a value for maximum session and idle session timeout settings.

    Maximum session and idle session timeout settings

    Idle session timeout options

  6. Optionally, customize the maximum session timeout.

    Maximum session timeout customization options

  7. Save your selections.

Important

Any unsaved work will be lost when the session timeout occurs. The system cannot automatically save your work before logging you out.

Best Practices

  • Save your work frequently
  • Be aware of the configured timeout period
  • Respond to timeout warnings promptly if you're actively working

How It Works

The system monitors user activity including keyboard, touchpad or mouse actions. User-initiated background processes or system-generated activities do not count as user activity.

Automatic Logout Process

  1. Inactivity Monitoring - The system tracks time since your last interaction.
  2. Warning Notification - You'll receive a warning popup 1 minute before automatic logout.
  3. User Choice - You can choose to stay signed in or log out immediately.
  4. Automatic Logout - If no action is taken, you'll be logged out automatically upon timeout.