Close TOC
My Group: This user has no roles.

My Distribution ID: Please log in to see your distribution ID.

Explore This Section

My Group: This user has no roles.

My Distribution ID: Please log in to see your distribution ID.
Open TOC

Page Contents

 


NIVOMAX Secure Access Strategy | Out-of-Band (OOB) Authorization

Disclaimer

SYNAXIOM does not distribute NIVOMAX Viewer setup files directly to end users. To obtain the necessary setup files, users must download a copy directly from the Technical Publications Supplier's NIVOMAX Self Serve portal, subsequent to agreeing to the terms and conditions stipulated therein. The Technical Publication Supplier, possessing a valid Distribution ID for their copy of the NIVOMAX Applications, is the sole distributor. Access to and use of the NIVOMAX Viewer is contingent upon the purchase of a Data License for a digital product from the Technical Publications Supplier. The digital product downloaded will function exclusively with the viewer provided by the respective Supplier. Users are advised that the distribution of NIVOMAX Viewer setup files may be governed by applicable export control regulations depending on their region.

Licensing

It is not necessary for end-users to purchase a separate NIVOMAX license. The Technical Publications Supplier from whom you have acquired your Data License has already procured the requisite licenses from SYNAXIOM. By extending an invitation, they include you within their authorized user pool, as permitted under their NIVOMAX license agreement. You are authorized to use the NIVOMAX software provided the Technical Publications Supplier maintains a valid NIVOMAX software license.

Confidentiality

This document (“Document”) contains confidential and proprietary information owned by SYNAXIOM Inc. (“SYNAXIOM”). No part of this Document may be reproduced, copied, or distributed in any form or by any means without the prior written permission of SYNAXIOM Inc. Unauthorized use, disclosure, or reproduction of this Document is strictly prohibited. Any third-party intellectual property mentioned herein is the property of their respective owners, and such mention is for informational purposes only and does not imply any association with or endorsement by the owners.

This page must not be removed before distributing the document. It must remain present in all shared copies to ensure proper communication and compliance.

NIVOMAX Secure Access Strategy | Out-of-Band (OOB) Authorization

Published on September 11, 2025 ( Last Updated on September 11, 2025 ) | 3 min read


Executive Overview

The NIVOMAX 2025 platform introduces a modern, token-based Out-of-Band (OOB) authentication and authorization model across all Viewer editions. This approach addresses login fatigue, reduces password-related risks, and strengthens compliance by combining seamless offline-first access with enterprise-grade entitlement control.
By replacing repeated password prompts with secure session and entitlement tokens, NIVOMAX enables operators, MROs, and OEMs to maintain high security standards while improving productivity in real-world operational contexts.

Why OOB Matters

Traditional password-only workflows assume stronger control than they often deliver:

  • Passwords are reused, written down, or stored insecurely.
  • Browser autofill and weak session management create vulnerabilities.
  • Repeated prompts encourage poor security habits.

OOB replaces this with short-lived session tokens and cryptographically bound entitlement payloads, ensuring authentication and access remain secure while user experience improves.

The Dual-Token Model

NIVOMAX OOB introduces a two-token system:

  • Online Session Token
    • Issued after successful SSO login (username/password, MFA optional).
    • Short-lived, session-scoped, idle-expiring.
  • Offline Access Token
    • Signed, time-limited, device-bound entitlement payload.
    • Allows offline use within a configurable validity window.

This combination ensures that access remains user-specific, auditable, and revocable — even when operating in offline or low-connectivity environments.

Security and Compliance Alignment

The OOB model supports enterprise security and compliance requirements:

  • Session Logging: Every session records user ID, device, entitlement ID, and access timestamps. Logs sync to SSP when online.
  • Auditability: Offline access is logged locally in tamper-evident format and uploaded on reconnection.
  • Configurable Retention: Logs can be archived per organizational policy.
  • Traceability: Administrators can filter and export logs by user, product, timestamp, or Viewer type.
  • Revocation Controls: Offline tokens expire per policy and require re-validation through the IdP.

Policy Controls Available

Organizations can tailor their OOB deployment with configurable options such as:

  • Maximum offline token duration (24 hours, 72 hours, 7 days, or custom).
  • Authentication modes: OTP, password, or hybrid.
  • Device/IP enforcement at the IdP or Viewer layer.
  • Mobile app pairing for second-factor authentication.
  • Auto-lock after inactivity.
  • Disable offline access entirely if required.

Why OOB Is Stronger Than Password-Only Models

Weakness of Passwords Strength of OOB
Users share, save, or reuse passwords Tokens are device-bound, time-limited, and scoped to user + Viewer context
Password fatigue encourages insecure habits No stored password; MFA supported where applicable
No control over session continuity Sessions expire automatically; offline use revocable and auditable
No logging of offline activity All access events logged locally and synced on reconnection

Business Impact

  • For Operators and MROs: Reduced downtime and login interruptions in field environments.
  • For OEMs: Improved compliance posture while supporting global distribution models.
  • For IT and Security Teams: Stronger identity assurance and auditability without user resistance.

Next Steps

The OOB entitlement model is available across all NIVOMAX 2025 Viewer editions. Customers may adopt it immediately or continue with existing access models.

NIVOMAX 2025 | Reimagining Access. Elevating Experience.


For the latest documentation on this and other important topics, please refer to the NIVOMAX Help Center. The NIVOMAX Help Center is your primary resource for up-to-date information, guidelines, and self-serve support for NIVOMAX.

This document also has an online version which may be more up-to-date.


CONFIDENTIAL

This document is the property of SYNAXIOM Inc.