Árvore de páginas

Versões comparadas

Chave

  • Esta linha foi adicionada.
  • Esta linha foi removida.
  • A formatação mudou.

...

The user management page allows the company administrator to view the names, emails, status, quantity, and registration page of each user, as well as assign applications and associate users with groups. All The audit report records all changes to users are recorded in the audit report (documentation in Portuguese language).

It is also from the Manage Users page that the procedure to manually include add new users in manually to the context is initiatedbegins.

The possible status for accounts in TOTVS Identity account statuses are:

  • Activated: the created/imported user is active and can access the context.
  • Invited: the created user has not yet accessed the context for the first time, and therefore the account has is not been activatedactive.
  • Deactivated: the corporate administrator has deactivated the created/imported user has been deactivated from the context by the corporate administrator and therefore ; therefore, the user can no longer access it.
  • Blocked: the created/imported user is prevented from accessing unable to access the company as they have exceeded the limit of unsuccessful attempts established set by the company policy.

The available roles for accounts in TOTVS Identity are:

  • Administrator: this type of account ensures access to user management, groups, applications, and other settings of the company context in Identity.
  • Regular user: this type of account allows access to the navigable applications or those assigned to the user by the administrator and to the user's personal profile.

...


Query users

...

01. Access the Users menu.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

A list will be is displayed with all users registered in the company context in TOTVS Identity, both those imported from an Active Directory and those created manually. Next to each user's name, you can check the account type (Regular user or Administrator) and the status in the company (Activated, Invited, Deactivated, or Blocked).

...

Filter users

...

01. Access the Users menu.

02. Click the Filter button.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The records displayed on the page at when clicking the moment the Export button was clicked will be are exported to a CSV file. A link valid for 48 hours is sent to the The email address of the administrator who requested the report receives a link valid for 48 hours, for downloading the exported file.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The browser should automatically present the option to save a file in CSV format. If this does not occur, in the open tab, click the Download option.

The CSV file contains the email, identifier, full name, role (regular user or administrator), and the current status at the time of generating the report.

...

These steps refer to the manual inclusion addition of users in at a company using TOTVS Identity. To learn about importing users from Active Directory, please refer to the Active Directory documentation.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The requested information is:

Estado
titleNEW USER

First Name
User's first name

Last Name
User's last name

Would you like to enable access with a username?
This field is displayed only if You can only view this field by enabling username access is enabled for the company.
By enabling this option, the user will access accesses the system using a username instead of an email. This access method is only available for regular users.

Username
This field is displayed only if username access is enabledYou can only view this field if you enable username access.
Login used for authentication in Identity and TOTVS applications. This login must meet the following requirements: be up to 150 characters long, not start or end with special characters, and be unique within the company.

Email
This field is displayed only if Disable username access is disabledto view this field.
Email address that will to be used for authentication in Identity and TOTVS applications. The email address must be valid and unique for each account in the context.

Would you like to make this user an administrator?
By enabling this option, it defines that this user will have an administrator role, managing users, groups, applications, and other settings in the Identity context.

Estado
titleACTIVATION OPTIONS

In the Activation Options section, you can select the method of account activation is selected. The available options are:

  • Invitation Email: When checked, account activation is performed the user can activate the account through a link contained in the invitation sent to the user's their email.
  • Temporary Password: When checked, the account activation is performed becomes active as soon as the registration is completed by the administratoradministrator completes the registration. To view the generated temporary password, the administrator must access the user view page. No invitation is sent via email in this activation mode.
Nota

Both activation methods require the user to create a personal password to access the context.

It is possible to You can configure which of the authentication methods will be is pre-selected in the new user registration on the New Accounts page (documentation in Portuguese language).

Estado
titlecustom FIELDS

The Custom Fields section is displayed only if there are fields created You can only view the Custom Fields section by creating fields in the Identity Customization feature.

04. Click the Groups tab and check the groups that should be associated you can associate with the user.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

By default, the user is automatically associated with the Everyone group, which includes all users in the company. It is possible to You can use the search to filter if there are many registered groups.

By associating the user with the groups, all linked applications will be are automatically associated with the user.

05. Click the Applications tab and check the applications that should be associated you can associate with the user.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The user is automatically associated with the applications linked to the Everyone group and any other groups they are added to. It is possible to You can use the search to filter the desired applications.

06. Click Add User to complete finish adding the user inclusion.


View user

...

The user data page gathers registration information and allows the administrator to take a series of actions related to the user's account, such as resending the invitation via email, resetting the MFA configuration, changing the user type, associating groups, assigning applications, provisioning in Active Directory, deactivating the account, among others.

...

02. Locate the desired user in on the list.

03. Click on the user's name or the View icon to open the respective page with the data.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

Estado
titleuser data

Name
Single field for the user's first and last name.

Nota

For users synchronized with Active Directory, the First Name will be is considered up to the first space. The following terms will be are considered Last Name. For example: If the name entered in this field is Luis Fernando da Silva, the first name will be is Luis, and Fernando da Silva will be is considered the last name.

Email or Username
Email or name used for the user's access to the company context in Identity.

User Type
The existing types are: administrator or regular user.

  • Administrator: this type of account ensures access to user management, groups, applications, and other settings in the Identity context.
  • Regular user: this type of account allows access to navigable applications or those the administrator has assigned to the user by the administrator and to the user's personal profile.

Status
The user can be Activated, Invited, Deactivated, or Blocked. Below the status, you can view the date of the last change in the user's status is presented.

Department
Department linked to the user.

Temporary Password
The interface displays the temporary password is displayed only if the user has not yet changed the temporary password generated by the administrator.

Custom Fields
The You can only view the Custom Fields section is only presented if there are created fields created exist in the Identity Customization feature.
If there are custom fields, these fields appear for consultation below the user's registration information.

Estado
titleASSOCIATED WITH THE USER

Groups
Number of groups to which the user has been associated.

Applications
Number of applications assigned to the user.

Active Directory Provisioning
Status of users imported from Active Directory. Allows for the provisioning of the account in Active Directory, if there a directory is a directory linked to the context.

MFA Authentication
Indicates the status of multi-factor authentication access for this user: Disabled, Configured, and Not Configured.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The information that you can be changed edit includes: Username, User Type, Department, and custom fields (if any). The administrator cannot edit the email or username cannot be changed by the administrator.

04. Click Save to confirm the changes.

...

01. Access the Users menu.

02. Locate Find the desired user in the list.

...

05. Click Export to confirm it.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The data for the respective user related to the current company will be is downloaded in a JSON file. In this file, it is possible to you can review the entire history of views and changes that have occurred in the to the user's personal data related to this user.


User Groups

...

Associate User with Groups

...

01. Access the Users menu.

02. Locate Find the desired user in the presented list.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

A list is presented The interface presents a list with all the groups registered in the context of the company in TOTVS Identity, both those imported from Active Directory and those created manually.

04. Check Select the area corresponding to the group that should be included you must add and click Associate groups to confirm it.


Manage Groups

...

01. Access the Users menu.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

A list is presented The interface presents a list with all the groups to which the user has been is associated.

04. Locate the groups from which you want to remove the user and click Remove group .

...

02. Locate the desired user in on the presented list.

03. Click More options located in the user's row and select the Associate applications option.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

A list is presented The interface presents a list with all the applications registered in the context of the company in TOTVS Identity.

04. Locate the desired applications in on the list or use the Search applications field to find them.

05. Check Select the area corresponding to the application you want to assign and then click Associate applications.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The interface lists the applications assigned directly to the user's account or associated with the user's groups will be listed. Only the applications associated with the user can be removed through this screen. Through this screen, the user can only remove the applications they are associated with.

04. Locate the applications you want to remove, click More options , and then click Remove application.

...

02. Locate the desired user in on the list.

03. Click on the user's name or on the View icon to open the respective page with the user's data.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The Active Directory Provisioning panel displays the provisioning status of the user in Active Directory.

  • Provisioning enabled : Displays the AD in which the user is provisioned and the More details option to consult the Active Directory data (Account domain, Root DN, ObjectGUID, and ImmutableID).
  • Provisioning not configured : The Provision option is presented for in order to create the user to be created in one of the AD directories linked to the context of TOTVS Identity.
  • Provisioning available for configuration : If there are no ADs are linked  to to the company's context in Identity, the panel displays no information will be displayed in the panel, and the background color will be is gray.


Consult Details

...

01. Access the Users menu.

02. Locate the desired user in on the list.

03. Click on the user's name or on the View icon to open the respective page with the user's data.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The Account domain, Root DN, ObjectGUID, and ImmutableID of the user synchronized with Active Directory will be are listed for consultationqueries.


Provision User

...

01. Access the Users menu.

02. Locate the desired user in on the list.

03. Click on the user's name or on the View icon to open the respective page with the user's data.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The necessary data required for provisioning are:

Active Directory
Select the desired directory from those linked in Identity.

Root DN and Account Domain
The Root DN and Account Domain fields are automatically filled based on the selected Active Directory, but you can be edited edit them if desired.

Temporary Password and Re-enter Password
Enter the temporary password and repeat the password for confirmation. This password will be is assigned only to the user's account created in Active Directory.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

A request will be is sent to Active Directory via SmartSync to create the user in the chosen domain. After provisioning, the user will be able to authenticate with the Active Directory password in this Identity context, provided that the company's administration has enabled this feature.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The MFA Authentication panel presents the status of this security feature for the user in questionat issue.

  • MFA authentication enabled : The configuration user has been completed by the userconfiguration, and the administrator can use the Disable option can be used by the administrator in case of loss or theft of the user's device.
  • MFA authentication disabled : The user has not yet configured multifactor authentication on their account.


Disable User MFA Access

...

This option allows you to configure the multifactor authentication

...

again, in case of device change or removal of the account previously registered in the My Safe

...

ID application, for example.

01. Access the Users menu.

02. Locate the desired user in on the list.

03. Click on the user's name or on the View icon to open the respective page with the user's data.

...

Painel
borderColor#f2f2f2
bgColor#f2f2f2

The justification is mandatory required and will be recorded in history; . You may later consult it can later be consulted in the audit report.

06. Click the Disable button.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

If the user is part of a group with mandatory required MFA, it is necessary they need to configure multifactor authentication again for to be granted access to Identity to be granted.

Reenviar convite


Resend Invitation

...

This option is only displayed if the user status is InvitedEssa opção só é apresentada caso o usuário esteja com a situação Convidado.

01.  Acione o menu UsuáriosAccess the Users menu.

02. Localize o usuário desejado na lista.

03. Clique sobre o nome do usuário ou sobre o ícone Visualizar Image Removed para abrir a respectiva página com os dados do usuário.

Locate the desired user on the list.

03. Click the user's name or on the View Image Addedicon to open the respective page with the user's data.

04. In Actions, click More options Image Added and then Resend invitation04. Em Ações, acione Mais opções Image Removede entãoReenviar convite.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

Uma nova mensagem de convite é enviada ao e-mail do usuário com um link para ativação da conta nesse contexto do A new invitation message is sent to the user's email with a link to activate the account in this context of TOTVS Identity.

Senha temporária

Essa senha é gerada para usuários criados a partir da opção de ativação por senha temporária, ou para reset de senha nos casos em que o usuário não tem e-mail cadastrado e, consequentemente, não consegue efetuar o reset de senha pela tela de login. 

Image Removed

Copiar senha temporária

01. Acione o menu Usuários.

02. Localize o usuário desejado na lista.

03. Clique sobre o nome do usuário ou sobre o ícone Visualizar Image Removed para abrir a respectiva página com os dados do usuário.


Temporary Password

...

This password is generated for users created from the temporary password activation option, or for password reset in cases where the user does not have an email registered and, consequently, cannot reset the password via the login screen.


Copy Temporary Password

...

01. Access the Users menu.

02. Locate the desired user on the list.

03. Click the user's name or on the View Image Addedicon to open the respective page with the user's data.

04. Locate the Temporary Password field and click Copy temporary password Image Added04. Localize o campo Senha temporária e acione Copiar senha temporária Image Removed.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

Após acionar essa opção, a senha temporária é copiada para a área de transferência do usuário autenticado, e deve ser repassada ao usuário que necessita do acesso ao Identity. No primeiro login, o usuário é obrigado a alterar essa senha.

Resetar senha

Essa função só é permitida para usuário sem e-mail. Quando é gerada uma senha temporária para o usuário, ele automaticamente não consegue mais acessar com a senha anterior.

01. Acione o menu Usuários.

02. Localize o usuário desejado na lista.

03. Clique sobre o nome do usuário ou sobre o ícone Visualizar Image Removed para abrir a respectiva página com os dados do usuário.

After selecting this option, the authenticated user copies the temporary password to their clipboard, which must pass it on to the user who needs access to Identity. Upon first login, the user is required to change this password.


Reset Password

...

This function is only allowed for users without an email. When a temporary password is generated for the user, they automatically can no longer access with the previous password.

01. Access the Users menu.

02. Locate the desired user in the list.

03. Click on the user's name or on the View Image Addedicon to open the respective page with the user's data.

04. In Actions, click More options Image Addedand then Reset password04. Em Ações, acione Mais opções Image Removede então Resetar senha.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

Após acionar essa opção, será apresentada ao administrador uma senha temporária. Essa senha deve ser informada ao usuário, para que ele possa efetuar o login normalmente. No primeiro login, o usuário é obrigado a alterar essa senha.

Desativação temporária

Esse recurso possibilita que o usuário seja desativado por um período predefinido e após esse período, seja automaticamente reativado no TOTVS Identity.Image Removed

Planejar desativação temporária

01. Acione o menu Usuários.

02. Localize o usuário desejado na lista.

03. Clique sobre o nome do usuário ou sobre o ícone Visualizar Image Removed para abrir a respectiva página com os dados do usuário.

04. Em Ações, acione Mais opções Image Removede então Desativação temporária.

After selecting this option, a temporary password will be presented to the administrator. This password must be provided to the user so they can log in normally. Upon first login, the user is required to change this password.


Temporary Deactivation

...

This feature allows deactivating the user for a predefined period and after this period, to be automatically reactivated in TOTVS Identity.

Plan Temporary Deactivation

...

01. Access the Users menu.

02. Locate the desired user on the list.

03. Click the user's name or on the View Image Addedicon to open the respective page with the user's data.

04. In Actions, click More optionsImage Added and then Temporary Deactivation.

05. Fill in the information required.05. Preencha as informações necessárias. 

Painel
borderColor#f2f2f2
bgColor#f2f2f2

Data Inicial
Data em que o usuário deve ser desativado. Caso a data inicial configurada seja a atual, a desativação pode levar algumas horas para ser executada.

Data Final
Data em que o usuário deve ser reativado.

Descrição
Campo opcional, para que sejam incluídas mais informações sobre a desativação.

Start Date
The date when you want to deactivate the user. If you set the current date as the start date, the deactivation may take a few hours to execute.

End Date
The date when you want to reactivate the user.

Description
Optional field to include more information about the deactivation.

06. Click Deactivate06. Acione Desativar.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

Após salvar, o período de desativação temporária será apresentado na tela de dados do usuário.

A desativação temporária não sincroniza a situação do usuário desativado no TOTVS Identity com o Active Directory.

Alterar período de desativação temporária

01. Acione o menu Usuários.

02. Localize o usuário desejado na lista.

03. Clique sobre o nome do usuário ou sobre o ícone Visualizar Image Removed para abrir a respectiva página com os dados do usuário.

04. Localize o campo Desativação temporária e acione Editar desativaçãoImage Removed.

05. Ajuste as informações necessárias.

After saving, the user's data screen displays the temporary deactivation period.

Temporary deactivation does not synchronize the status of the deactivated user in TOTVS Identity with Active Directory.


Change Temporary Deactivation Period

...

01. Access the Users menu.

02. Locate the desired user on the list.

03. Click on the user's name or on the View Image Addedicon to open the respective page with the user's data.

04. Locate the Temporary Deactivation field and click Edit deactivation Image Added.

05. Adjust the needed information.

06. Click Deactivate06. Acione Desativar.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

O período de desativação temporária será apresentado na tela de dados do usuário.

Remover período de desativação temporária

01. Acione o menu Usuários.

02. Localize o usuário desejado na lista.

03. Clique sobre o nome do usuário ou sobre o ícone Visualizar Image Removed para abrir a respectiva página com os dados do usuário.

The user's data screen displays the temporary deactivation period.


Remove Temporary Deactivation Period

...

01. Access the Users menu.

02. Locate the desired user on the list.

03. Click the user's name or the View Image Addedicon to open the respective page with the user's data.

04. Locate the Temporary Deactivation field and click Remove deactivation Image Added04. Localize o campo Desativação temporária e acione Remover desativação Image Removed.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

O usuário não será desativado no período definido previamente.

Desativar usuário

01. Acione o menu Usuários.

02. Localize o usuário desejado na lista.

03. Clique sobre o nome do usuário ou sobre o ícone Visualizar Image Removed para abrir a respectiva página com os dados do usuário.

04. Em Ações, acione Mais opções Image Removede então Desativar usuário.

The user is not deactivated during the previously defined period.


Deactivate User

...

01. Access the Users menu.

02. Locate the desired user on the list.

03. Click the user's name or the View Image Addedicon to open the respective page with the user's data.

04. In Actions, click More options Image Addedand then Deactivate user.

05. Click Deactivate to confirm the deactivation04. Confirme a desativação acionando Desativar.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

Após confirmar, o usuário não terá mais acesso ao contexto em que foi desativado, a menos que seja reativado por um administrador.

Nos contextos em que a opção Sincronizar mudanças no estado do usuário do Identity para o Active Directory esteja ativada, o usuário também será desativado no Active Directory.

Reativar usuário

Essa opção só é apresentada caso o usuário esteja com a situação Desativado.

01. Acione o menu Usuários.

02. Localize o usuário desejado na lista.

03. Clique sobre o nome do usuário ou sobre o ícone Visualizar Image Removed para abrir a respectiva página com os dados do usuário.

04. Em Ações, acione Mais opções Image Removede então Ativar usuário.

After confirming, the user can no longer access the context in which they were deactivated, unless an administrator reactivates them.

In contexts where the option Synchronize user status changes from Identity to Active Directory is enabled, the user is also deactivated in Active Directory.


Reactivate User

...

This option is only available if the user status is Deactivated.

01. Access the Users menu.

02. Locate the desired user on the list.

03. Click the user's name or the View Image Addedicon to open the respective page with the user's data.

04. In Actions, click More options Image Addedand then Activate user.

05. Click Activate to confirm the activation04. Confirme a ativação acionando Ativar.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

O usuário volta a ter acesso completo à conta no contexto.

Excluir usuário

01. Acione o menu Usuários.

02. Localize o usuário desejado na lista.

03. Clique sobre o nome do usuário ou sobre o ícone Visualizar Image Removed para abrir a respectiva página com os dados do usuário.

04. Em Ações, acione Excluir usuário Image Removed.

The user regains full access to the account in the context.


Delete User

...

01. Access the Users menu.

02. Locate the desired user on the list.

03. Click the user's name or the View Image Addedicon to open the respective page with the user's data.

04. In Actions, click Delete user Image Added.

05. To confirm the deletion, click Delete04. Para confirmar a exclusão, acione Excluir.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

After confirming, the user's account is completely removed from the company and cannot be restored. The user no longer has access to the context of the TOTVS Identity from which you have removed them.

If the deleted user was imported from Active Directory, their account is automatically included in the Rejected list

Após confirmar, a conta do usuário será totalmente removida da empresa e não poderá ser restaurada. O usuário não terá mais acesso ao contexto do TOTVS Identity do qual foi removido.

Caso o usuário excluído tenha sido importado a partir do Active Directory, sua conta será automaticamente incluída na lista de Rejeitados.

Nota
titleAtenção

No processo para excluir um usuário existem etapas que são assíncronas e também destacamos que remover registros pode ser oneroso em relação ao tempo do processamento do banco de dados. Com isso, pode haver variação de tempo na exclusão para cada usuário do TOTVS Identity, por este motivo, recomendamos que após a confirmação da exclusão, o usuário atualize a página para validar de fato que o usuário em questão foi removido.

Desbloquear usuário

Essa opção só é apresentada caso o usuário esteja com a situação Bloqueado, ou seja, tenha sido bloqueado por excesso de tentativas de login.

01. Acione o menu Usuários.

02. Localize o usuário desejado na lista.

03. Clique sobre o nome do usuário ou sobre o ícone Visualizar Image Removed para abrir a respectiva página com os dados do usuário.

04. Em Ações, acione Mais opções Image Removede então Desbloquear.

Attention

In the process of deleting a user, there are asynchronous steps, and we also highlight that removing records can be resource-intensive regarding database processing time. Therefore, there may be a variation in the time it takes to delete each user from TOTVS Identity. For this reason, we recommend refreshing the page after confirming the deletion to make sure the user at issue is indeed removed.


Unlock User

...

This option is only available if the user status is Locked, meaning they have been locked due to excessive login attempts.

01. Access the Users menu.

02. Locate the desired user on the list.

03. Click the user's name or the View Image Addedicon to open the respective page with the user's data.

04. In Actions, click More options Image Addedand then Unlock.

05. In the confirmation window, click Unlock05. Na janela de confirmação, acione Desbloquear.

Painel
borderColor#f2f2f2
bgColor#f2f2f2

Com isso, o usuário estará poderá voltar a tela de login para autenticar-se ou acionar a opção Esqueceu sua senha?This way, the user is able to return to the login screen to authenticate or use the Forgot your password? option.

Dica
titleDica!Tip!

If the user has a password reset email configured, they can unlock themselves through the personal password recovery optionCaso o usuário tenha um e-mail de reset de senha configurado, ele próprio consegue realizar o desbloqueio pela opção de recuperação de senha pessoal.

HTML
<!-- Hotjar Tracking Code for http://tdn.totvs.com/display/fb -->
<script>
    (function(h,o,t,j,a,r){
        h.hj=h.hj||function(){(h.hj.q=h.hj.q||[]).push(arguments)};
        h._hjSettings={hjid:1280165,hjsv:6};
        a=o.getElementsByTagName('head')[0];
        r=o.createElement('script');r.async=1;
        r.src=t+h._hjSettings.hjid+j+h._hjSettings.hjsv;
        a.appendChild(r);
    })(window,document,'https://static.hotjar.com/c/hotjar-','.js?sv=');
</script>