Users
Lucas Joyal (Talk | contribs) (→Configuration: Putting the link in a table to separate SBC from Tmedia) |
Lucas Joyal (Talk | contribs) (→User Groups: Add warning about full authorization to Users) |
||
Line 31: | Line 31: | ||
The ''Admin'' User Group is not modifiable, and each User in this group has access to all the resources of the Web Portal. | The ''Admin'' User Group is not modifiable, and each User in this group has access to all the resources of the Web Portal. | ||
+ | |||
+ | Be careful when creating a User Group that has full authorization to Users. Access to users can lead to privilege escalation where a user create another user belonging to the Admin user group, thus gaining total access to the web portal. | ||
== Security settings (from 2.10 and up) == | == Security settings (from 2.10 and up) == |
Revision as of 15:29, 3 November 2016
Users and User Groups are the building blocks of authentication and authorization for Toolpack systems.
The proper implementation of Users and User Groups increases efficiency and reduce costs by:
- Reducing Human Error,
- Mitigating Risks,
- Improving Security,
- Speeding up and simplifying maintenance and troubleshooting.
Contents |
Users
Each person that uses Toolpack Web Portal should be assigned their own user name and password.
User Groups
User Groups define a list of authorized actions applied to each item in the left-hand navigation menu of the Web Portal.
There are 3 authorization levels per resource:
Read/Write Full access to the resource. Read Only view access to the resource. The action commands will be hidden. None No access to the resource. It won't be displayed in the left menu.
Each User needs to be in a User Group. To modify a user's access to a resource, the User Group is modified or a new User Group is created with the appropriate authorization.
The Admin User Group is not modifiable, and each User in this group has access to all the resources of the Web Portal.
Be careful when creating a User Group that has full authorization to Users. Access to users can lead to privilege escalation where a user create another user belonging to the Admin user group, thus gaining total access to the web portal.
Security settings (from 2.10 and up)
Security settings regroup all the global settings options available in the Web Portal.
It contains the following options:
- Enable password complexity
- Session timeout
Configuration
Tsbc | Tmedia/Tsig/Tdev |
---|---|