User Portal (Security Settings)

🎯 Purpose

The User Portal provides logged-in users with features to manage their authentication settings and preferences. It offers self-service capabilities for security management.


🔑 Access Requirements

  • Full Authentication: User must complete MFA login
  • Portal Link: Accessed via "Manage your Account Security Preferences" link
  • Secure Session: Maintains authenticated session throughout portal use

🛠️ Available Features

📱 Sign-In Options Management

The Sign-In Options screen displays available authenticators including:

  • Password authentication
  • Email OTP authentication
  • SMS OTP authentication
  • Authentication Code in App (for REL-ID mobile users)
  • Push Notification (for REL-ID mobile users)

🔒 Re-authentication Requirement

  • Initial View: Sign-in options displayed but editing disabled (grayed out)
  • Re-auth Trigger: User must click "Confirm" to enable editing
  • Re-login Process: User completes full authentication again
  • Editing Enabled: Add/edit buttons become clickable after re-authentication
  • Session Persistence: Multiple operations possible without repeated re-authentication

📧 Update Email

  • Purpose: Change email address for receiving Authentication Codes
  • Process:
    1. Enter new email address
    2. Click "Generate OTP" button
    3. Authentication code sent to new email
    4. Enter received code for validation
    5. Email updated upon successful validation

    📲 Update Mobile Number

  • Purpose: Change mobile number for SMS Authentication Codes
  • Process:
    1. Enter new mobile number
    2. Click "Generate OTP" button
    3. Authentication code sent via SMS to new number
    4. Enter received code for validation
    5. Mobile number updated upon successful validation

    🔒 Update Password

  • Purpose: Change existing password
  • Process: User enters new password and confirms change
  • Success: Confirmation screen displayed after successful update

🌐 Remembered Browsers Management

Browser Information Displayed

InformationPurpose
Browser NameDevice identification (Chrome, Firefox, etc.)
Operating SystemPlatform details (Windows, macOS, etc.)
Creation DateWhen browser was first remembered
Last Access DateMost recent login time
Browser IconVisual identification for supported browsers

Browser Organization

  • Sorting: Listed from most recently accessed to least recently accessed
  • Layout: Left to right arrangement
  • Visual Cues: Icons help identify different browsers quickly

Browser Management Actions

  • 📋 View Details: Click information icon to see detailed browser information
  • 🗑️ Delete/Forget: Click delete icon to remove browser from remembered list
  • ⚠️ Confirmation: Deletion requires user confirmation
  • Immediate Effect: Removed browsers require full authentication on next login

🎯 Success and Failure Scenarios

✅ On Success

  • Changes to authentication settings saved immediately
  • Success screens confirm completed operations
  • Updated settings available for immediate use
  • Browser management changes take effect instantly

❌ On Failure

  • Invalid OTP codes require regeneration and retry
  • Network issues may prevent setting updates
  • Re-authentication timeout requires starting over
  • System configuration may restrict certain changes