Overview
The Security Settings page brings together the controls that govern who can reach MyConnection Server (MCS), how sessions are protected, and how satellites and client apps authenticate. Open it from
Each setting is documented on its own page below. Changes are not applied until you click
Settings
| Setting | Description |
|---|---|
| 2-step authentication | Require an emailed code after the password. |
| Access control list | Allow or deny access by IP and URL. |
| Automatic log-on | Pre-authorise specific IPs as a chosen user. |
| HTTP / proxy / security headers | Custom HTTP response headers. |
| CSRF protection | Reject admin requests not originating from MCS. |
| Cookie attributes | Secure and HttpOnly flags on session cookies. |
| Data controls | Hide public reports from non-database users. |
| Proxy headers | Headers MCS reads for the real client IP. |
| Permitted user agents | Non-browser clients allowed to make requests. |
| Work order passcode | Satellite to MCS / NCS authentication. |
| NQC client passcode | Mobile NQC client authentication. |
| Password specification | Rules every user password must satisfy. |
