Skip to content

Security and support

Do not copy live support credentials, session secrets, or hostnames into tickets, chat, or this site. Those appear only in the Admin Console for the duration of an approved session.

Admins sign in with an on-appliance username, password, and mandatory TOTP. Sessions are local to this appliance. The same identity system serves the Locai App for user accounts.

Idle timeout defaults to 30 minutes. A session is capped at 12 hours by default. You can change both on Security. Full briefing: How Locai One is secured.

Path Certificate
Office network / mDNS Issued by this appliance (install the box CA on managed devices)
Company hostname (public access) Public certificate (after you enable access from the internet)

Download the box CA from Network or Security. Rotate or re-download only when the appliance instructs you to.

The Support page in the Admin Console is the only place to:

  • Download a diagnostics package (treat it as sensitive operational data).
  • Approve a time-bounded remote session for Locai engineers, then revoke it when finished.

Prefer opening a remote session only while a ticket is active, and always set a reason for the audit trail.

Factory reset lives under General. It is destructive: accounts and stored work on the appliance are not recoverable from the console afterwards.

Security is where you download the box CA, change session timeouts, and sign out every Admin Console session on this appliance.

Locai Support accounts in the Admin Console, when present, are read-oriented for diagnosis.

  • Keep public access off unless you need it (Network).
  • Prefer distributing the box CA over asking users to bypass certificate warnings.
  • Review Activity after sensitive changes (users, network, support sessions, factory reset).
  • Factory reset (General) and power actions are destructive; follow on-screen confirmation. There is no backup wizard in the console.