DPOD's Web Console enables the user to view all the information gathered, processed and analyzed by DPOD.
This useful information can be highly confidential. DPOD therefore implements a suite of security functions in order to enable confidentiality and and Role Based Access Control to DPOD's functions and information.
Access to DPOD's Web Console is provided via a supported web browser over HTTPS (SSL).
The Console uses a Self signed certificate and key (in PEM format) generated during the DPOD installation process.The user should replace them with the organization’s certificate.
Audit log (Access log ) - exists and enabled by default - You can configure its format, It can be done from /app/ui/MonTier-UI/conf/server.xml look for the string: access_log and look for explanation in the comments.
Session timeout - yes (30 min) - session timeout - It can be configured from the config files only . It can be done from /app/ui/MonTier-UI/conf/web.xml - look for the string: session-timeout and look for explanation in the the comments.