User Management: Difference between revisions
(10 intermediate revisions by 3 users not shown) | |||
Line 5: | Line 5: | ||
== Step 1 :: New user completes registration form == | == Step 1 :: New user completes registration form == | ||
* New users are required to complete the registration form provided at [https://acumen.tms-uk-rail.co.uk/register https://acumen.tms-uk-rail.co.uk/register] | * New users are required to complete the registration form provided at [https://acumen.tms-uk-rail.co.uk/register https://acumen.tms-uk-rail.co.uk/register] (or [https://acumen-training.tms-uk-rail.co.uk/register https://acumen-training.tms-uk-rail.co.uk/register] for the training server). | ||
* Once submitted, the candidate user receives a confirmation email. | * Once submitted, the candidate user receives a confirmation email. | ||
* Once submitted, any users with super user (SU) rights for the email domain and deployment region/route | * Once submitted, any users with super user (SU) rights for the email domain and deployment region/route receives an email from acumen informing them of the new account creation. | ||
::<small><b>Example: </b>Super users where @domain.com match and where the stated route match, e.g. east_coast will receive the new user alert and will therefore be assigned SU rights to edit and validate the account</small> | ::<small><b>Example: </b>Super users where @domain.com match and where the stated route match, e.g. east_coast will receive the new user alert and will therefore be assigned SU rights to edit and validate the account</small> | ||
== Step 2 :: | == Step 2 :: Super user validates new account request == | ||
On receipt of an email informing the super user of a request for a new account, the super user is required to: | On receipt of an email informing the super user of a request for a new account, the super user is required to: | ||
Line 45: | Line 45: | ||
::[[File:Password reset.png]] | ::[[File:Password reset.png]] | ||
::<small><b>Note</b>: The email address field is automatically populated and cannot be changed</small> | ::<small><b>Note</b>: The email address field is automatically populated and cannot be changed</small> | ||
* The applicable user is sent an email confirming the password reset | * The applicable user is sent an email confirming the password reset, including the new password. | ||
::<small><b>Note</b>: The password is hashed, or encrypted in the acumen database and cannot be recovered - users are guided to safeguard the new | ::<small><b>Note</b>: The password is hashed, or encrypted in the acumen database and cannot be recovered - users are guided to safeguard the new accouint password and to delete the originating email</small> | ||
= Locking / Unlocking an account = | = Locking / Unlocking an account = | ||
Line 69: | Line 69: | ||
::[[File:Delete account icon.png]] | ::[[File:Delete account icon.png]] | ||
* The SU will be provided with a confirmation prompt - click 'OK' to delete the account or click 'Cancel'; | * The SU will be provided with a confirmation prompt - click 'OK' to delete the account or click 'Cancel'; | ||
= Granting Super User privileges = | |||
<b>Note: Super users do not have the rights to grant Super User privileges</b> | |||
* Using the steps defined in section 1: <b>New Users - Process Flow</b> above, locate the relevant user account within the acumen user management page; | |||
* Click on the 'Grant Privileges' icon to grant SU privileges: | |||
::[[File:Grant su.png]] | |||
* Click on the 'Revoke Privileges' icon to remove SU privileges: | |||
::[[File:Revoke su.png]] |
Latest revision as of 10:37, 30 November 2020
This page is provided to assist acumen Administrators and Superusers in using the interface provided within acumen to manage users of the system.
New Users - Process Flow
Step 1 :: New user completes registration form
- New users are required to complete the registration form provided at https://acumen.tms-uk-rail.co.uk/register (or https://acumen-training.tms-uk-rail.co.uk/register for the training server).
- Once submitted, the candidate user receives a confirmation email.
- Once submitted, any users with super user (SU) rights for the email domain and deployment region/route receives an email from acumen informing them of the new account creation.
- Example: Super users where @domain.com match and where the stated route match, e.g. east_coast will receive the new user alert and will therefore be assigned SU rights to edit and validate the account
Step 2 :: Super user validates new account request
On receipt of an email informing the super user of a request for a new account, the super user is required to:
- Login to acumen and navigate to the Administration Page;
- Click the 'Load User Table' button;
- Locate the new user and validate the request authenticity;
- Click on the 'Edit Account' icon;
- Edit the users account by adding the appropriate permissions for the relevant location;
- Edit the date roles for the user account;
- Click submit once the permissions and data roles are correct;
Step 3 :: Change the users account status to active
- Click on the unlock account icon;
Password Reset
Super users are provided with the functionality to rest a users password; examples of use cases include forgotten passwords, addressing security concerns and following best practice for safeguarding IT systems - to reset a password:
- Using the steps defined in section 1: New Users - Process Flow above, locate the relevant user account within the acumen user management page;
- Click on the reset password icon:
- The SU is presented with the password reset modal; enter the new password twice and click the 'Submit' button, or click 'Cancel';
- The applicable user is sent an email confirming the password reset, including the new password.
- Note: The password is hashed, or encrypted in the acumen database and cannot be recovered - users are guided to safeguard the new accouint password and to delete the originating email
Locking / Unlocking an account
As detailed in section 1: New Users - Process Flow above, the unlock icon is used to unlock, or activate an account; whilst an account is in the Locked status, the user is prevented from logging into acumen.
As a counterpart to the unlock icon, super users can click on the lock icon to lock an account:
A SU should lock an account where a user is absent from the role that is authorised to access acumen, but may return at a later date - for example, extended sick leave or secondement.
Deleting an account
Super users are responsible for ensuring that user compliment for which they have granted rights to manage is kept current and up to date; this includes removing users from acumen where access is no longer required - for example, where a user has left the business or moved positions.
To this end, acumen provides a super user with the ability to remove an account.
Super users are requested to exercise caution when using this functionality as the deletion of a user account cannot be reversed
- Using the steps defined in section 1: New Users - Process Flow above, locate the relevant user account within the acumen user management page;
- Once the user account has been identified, click on the delete account icon:
- The SU will be provided with a confirmation prompt - click 'OK' to delete the account or click 'Cancel';
Granting Super User privileges
Note: Super users do not have the rights to grant Super User privileges
- Using the steps defined in section 1: New Users - Process Flow above, locate the relevant user account within the acumen user management page;
- Click on the 'Grant Privileges' icon to grant SU privileges:
- Click on the 'Revoke Privileges' icon to remove SU privileges: