The Device System Management section allows you to configure the local device web admin management, reboot schedules and external InControl Appliance settings for devices in a group.
Navigate to Groups Settings > Device System Management to view and configure these settings.

Device Web Admin Management
Device Web Admin management can be enabled by selecting the tick box.

General
The admin and read-only User username on the devices in the group can be changed.
A password can be assigned to these user accounts for all devices.
Alternatively, a random password can be assigned to each device.
The Read-only Username can be Disabled.
Web Session Timeout
The Web Session Time-Out indicates the time before a web login session gets logged out automatically if it has been idle longer that the Web Session Timeout.
0 hours 0 minutes signifies an unlimited session time.
This setting should be used only in special situations as it will lower the system security level if users do not logout before closing the browser.
Default: 4 hours 0 minutes
Web Admin passwords can be downloaded within this section by selecting the ‘Download admin passwords’ link.
Authentication using RADIUS


When this option is enabled, the web admin will authenticate using an external RADIUS server. Authenticated users are treated as “admin” users with full read-write permission. Local “admin” and “user” accounts will be disabled. However, when the device fails to communicate with the RADIUS server, local accounts are enabled to allow emergency access.
Web Admin Access

Select an option from the drop-down list to allow Web Admin access from LAN, WAN or both.
Access to the Web Admin can also be restricted to specific source IP subnet(s).
This is applicable only when LAN / WAN is selected in the Web Admin Access field above.
If Any is selected, web admin access is allowed from anywhere without any IP address restriction.
Each IP subnet must be specified in IDR Subnet Mask Notation
Separate each IP subnet on a single line to define multiple subnets.
For example:
192.168.0.0/24
10.8.0.0/16
To further enhance security the Web Admin Access port can be changed from the default 80 for HTTP or 443 for HTTPS.
Scheduled Reboot

The
Daily or Weekly Reboot schedules are configured in this section and applied to all or some devices using tags.
Select the required settings from the dropdown lists.
If several reboot schedules are applied to the same device, only the first matched rule will be applied.
External InControl Appliance Settings

When an External InControl Appliance is used, public InControl can still be used as a failover.
The external InControl appliance details need to be configured in the correct fields.
Failover to public InControl is optional.
If you use a private InControl appliance, add ALL serial numbers to both the “private ICVA” AND a Group on Public IC2.
Then configure “By Redirection”.
This means, if a device is factory reset, it will automatically re-direct to the Private ICVA.
It also means that no-one else can register that device in their Public InControl organisation.