Managing user permissions and security
You manage user permissions and security through the menu option in the Infor OS application.
This option is available to the user who has one of these security roles:
- IFSApplicationAdmin
- DataAdministrator
- UserAdmin
- Infor-SystemAdministrator
- IFS-PasswordAdmin
- IFS-ReadOnlyUser
- Infor-SystemAdministrator
- IFSAdminContact
- IFSApplicationAdmin
- IFS-AuditAdministrator
- IFS-AuditReportUser
- IFS-EEPasswordAdmin
- IFS-ExternalEntityAdmin
- IFS-MonitorAdministrator
- IFS-MonitorReportUser
- IFS-ShowUserManagementUI
- IFS-GroupsAdmin
- IFS-GroupsUpdate
- IFS-GroupsReadOnlyUser
To access :
- Click the .
- From Applications, select the application.
- Select the tab.
The option provides the capability for Infor OS applications to manage users. The users for the Infor OS applications are first created within . The user information is then replicated across the different Infor OS applications.
The option has the concepts of users, security roles, distribution groups, accounting entities, and locations.
has these menu options:
This table shows the descriptions of each menu option:
| Option | Description |
|---|---|
Used to view and manage users. These actions are available:
|
|
| Used to show all service users that are currently added to the Security system. | |
Used to view and manage clients that users have used to access Infor OS Portal. These actions are available:
|
|
| Used to view and manage accounts that have been created to allow applications a resource owner grant to contact the Infor Authorization Service to obtain a token for use in making API requests. | |
| Used to show the URLs for the System for Cross-domain Identity Management (SCIM) service and SCIM user identifiers. | |
| Used to view and manage the ERP person IDs that have been added to your users. | |
Used to view and manage contacts. These actions are available:
|
|
Used to view and manage contact groups. These actions are available:
|
|
Used to view and manage groups. These actions are available:
|
|
| Used to show details of a SCIM groups. | |
| Used to view soft deleted users. Admins can restore or hard delete those users. | |
| Used to view the status and files of large import and export files for various IFS screens. | |
Used to view and configure security roles. These actions are available:
|
|
| Used to view and configure accounting entities. For example, you can assign users to accounting entities. | |
| Used to view and configure locations. For example, you can assign users to locations. | |
| Used to populate several LN-specific user properties during registration and synchronization. | |
| Used to manage and override the general security privileges granted to every user. | |
| Used to view and configure document authorizations including assigning security roles to documents. | |
| Used to associate connection point Logical IDs to the application Logical IDs. | |
| Used to view all of the function security roles in the system. | |
| Used to view, edit, and delete authorization claim values. | |
| Used to map security roles to security access profiles. | |
| Used to view and configure federated security settings including federated single sign on (SSO) using SAML. | |
| Used to view and configure service provider settings if your tenant has been configured with service provider options. | |
| Used to view and configure an Allowed or Blocked domain list. | |
| Used to view and configure the authentication mode. Lists URLs that you can use to access your system with different authentication methods. | |
| Used to view and configure the default setting for ION Person ID. | |
| Time-out: Used to view and configure the default idle session time-out.
Concurrent Sessions: Used to configure the number of concurrent sessions allowed. |
|
Used to view and configure other general settings:
|
|
| Configuration: Used to view and configure users who can sign in using Infor Cloud Identities.
Password Management: Used to view and configure password strength and complexity requirements for Infor Cloud Identities. |
|
| Used to view and configure options for user properties. | |
| Used to search through the audit logs. | |
| Used to search through the monitoring logs. | |
| Used to view the user-to-security role mapping report, security role mapping changes, and the values of the search criteria from the specified date and time range. | |
| Used to view audit and monitoring report settings, user activity settings, and Data Lake. |