User profiles or policies can be defined for a user or a user group. You may create multiple policies depending on the level of access you wish to grant. For example, you may want to set up restricted location-based access for remote users or restrict external users from accessing assets outside their working hours. This section will help you define required user access policies.
The system provides a Default User Access Policy which is applied to all new users added to the system via automated discovery via Active Directory or when added manually. You can update any policy type as a Default Policy.
The below table provides details about setting up policies for a user or a group of users while logging into the system and accessing functionalities of the system. Policies can be based on a combination of parameters or just individual parameters. At any point only one policy can be enforced for a user
Parameter | Discription | Configuration |
---|---|---|
Restriction |
Use this setting when you would like to restrict user access to the system on a specific day. |
User Define |
Schedule time |
Restriction to be applied based on time of the day. If you want to restrict a user to access any password or session using the solution between a certain time, this policy must be activated. |
TBA |
IP segment |
Select this option to enable restrictions based on IP Segments |
IP Access |
Video On Demand |
To view live session of User and gallery |
session logs |
MFA type |
Select this section to apply default Multi-Factor Authentication type. |
App otp SMS otp Email otp RSA SecureID Generic RADIUS Duo Google authenticator Microsoft authenticator |
Authentication |
Use this configuration to make the authentication easier and faster. Enforce MFA for User |
LDAP authentication |