user_management
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revisionNext revisionBoth sides next revision | ||
user_management [2019/03/01 14:00] – lucy | user_management [2019/07/01 15:46] – [How to set up a multitenant capable administration] lucy | ||
---|---|---|---|
Line 1: | Line 1: | ||
===== Introduction ===== | ===== Introduction ===== | ||
- | LUCY offers a role-based access control (RBAC), restricting system access to authorized users. The permissions to perform certain operations are assigned to specific roles within the user settings. Members or staff (or other system users) are assigned particular roles, and through | + | LUCY offers a role-based access control (RBAC), restricting system access to authorized users. The permissions to perform certain operations are assigned to specific roles within the user settings. Members or staff (or other system users) are assigned particular roles, and through |
===== Where can you configure the user settings? ===== | ===== Where can you configure the user settings? ===== | ||
Line 39: | Line 39: | ||
{{ usr_mng_6.png? | {{ usr_mng_6.png? | ||
+ | |||
+ | ===== How to convert users to LDAP-based? ===== | ||
+ | |||
+ | Lucy has the ability to convert the account to LDAP-based, so existing user can be logged in through LDAP. You can convert multiple accounts at once by selecting the necessary users and clicking the button " | ||
+ | |||
+ | {{: | ||
+ | |||
+ | //Note:// Lucy admin should configure the connection to Active Directory service to be able to use this feature. Please find more information about LDAP Integration [[ldap_integration|here]]. | ||
===== Can I enforce a password policy or strong authentication? | ===== Can I enforce a password policy or strong authentication? | ||
Line 45: | Line 53: | ||
Please find more [[password_policies_login_protection_strong_authentication|here]]. | Please find more [[password_policies_login_protection_strong_authentication|here]]. | ||
+ | |||
+ | ===== Can I authenticate administrative users via SSO? ===== | ||
+ | |||
+ | Yes. It is possible using the AD Federation service and authenticate the users automatically. See [[sso_authentication|chapter SSO.]] | ||
+ | |||
+ | |||
+ | ===== How to set up a multitenant capable administration ===== | ||
+ | |||
+ | To set up a multitenant capable administration, | ||
+ | |||
+ | **Use case 1**: You create a campaign for your customer, but want to give your customer access to the statistics within the campaign. It must be ensured that the customer only sees his own data and cannot intervene in the campaign configuration. | ||
+ | |||
+ | {{ rolebased_acces_view.png? | ||
+ | |||
+ | |||
+ | **Solution use case 1:** You create a view-only account (1) in " | ||
+ | |||
+ | |||
+ | **Use case 2:** You have a customer who wants to create their own campaigns. However, the customer should only have access to his statistics and not see other customers. | ||
+ | |||
+ | **Solution use case 2:** You create an account with the status " |
user_management.txt · Last modified: 2021/09/07 12:57 by lucysecurity