User access management

Infor OS Security manages user access for Infor applications. Users must be explicitly added as there is no predefined list. Initial administrators handle ongoing user management and configuration.

To access Infor applications, users must be added to Infor OS Security (formerly known as IFS), and have assigned specific roles. The system requires explicit addition and management of all users, as it does not include a predefined user list. The initial set of users, typically system administrators, is provisioned by the Infor CloudSuite provisioning service. These administrators are responsible for managing further user additions and configurations.

Management methods and user types

As a system administrator, you can manage users through these methods:

  • Infor OS Security Users Page: Traditional users are displayed in a grid on this page.
  • Import file: Allows bulk user creation through the structured file uploads.
  • SCIM service: Supports automated user provisioning from SCIM-compliant identity providers.
  • IFS APIs: Enable programmatic user management.
  • Sync.SecurityUserMaster BOD: Synchronizes users provisioned in another application to Security.

Security categorizes users into three types:

  • Traditional users: Visible in the grid on the Users page.
  • Service users: Visible in the Service Users screen under the Security application.
  • External users: Visible only in the External Entities application, which also handles their provisioning.

Active users can log in using one of these identity types:

  • Infor Cloud Identities.
  • Federated Identities: Provisioned by a tenant and configurable in the Identity Providers screen.

Best practices

Use these recommended practices:

  • Start by provisioning system administrators through Infor CloudSuite.
  • Use SCIM or APIs for scalable and automated user management.
  • Regularly review and audit user roles and access levels.
  • Configure identity providers to support secure federated login.