2. Multi-device access
Date: 2020-11-17
Status
Accepted
Context
In an earlier pentest the issue of allowing multiple concurrent sessions from different devices was raised. For example a user can be logged on in two different browsers or devices without being kicked off.
Decision
Sirius is a web application and as such one of its advantages is that it can be used on two devices simultaneously for differing purposes. i.e. viewing one part of a case on a tablet and another on a desktop. We should not prevent this. We should, however, notify users of abnormal logins as part of our authentication cycle.
Consequences
- We enable multi-device working
- We should ensure that abnormal logins are alerted to the user
This page was last reviewed on 10 December 2024.
It needs to be reviewed again on 10 June 2025
by the page owner #opg-sirius-develop
.
This page was set to be reviewed before 10 June 2025
by the page owner #opg-sirius-develop.
This might mean the content is out of date.