Logon Settings:

 

As the name suggests, the 'logon settings' feature of the ADSelfService Plus assists you in configuring the logon page of this application.

By default, the ADSelfService Plus application provides you with two different modes of logging into this application:

  • You - as the administrator - get to decide whether the end-users would be availed with the 'Admin Login' option.

  • In any case, it is advisable to prevent the end-users from making use of the 'Admin Login' portal. (By enabling the 'Hide Self-Service Admin Login' option. For further details see 'Configuration').

  • Enabling the 'Hide Self-Service Admin Login' option requires you to specify the 'url(s)/DNS names' that would be allowed to access the admin portal in the 'Make Admin Login Page Accessible Only from' textbox

 

Features:

 

Customizing The End-User Logon Page:

 

As an administrator, you are provided with the rights to customize the logon page of the end-users. To do so, click on the 'Customize User Logon Page' link available under this 'Logon Settings' feature.

 

Configuration:

  1. Click on Logon Settings (Admin → Customize → Logon Settings)

  2. Enable the 'Hide Self-Service Admin Login' checkbox.

  3. Select the 'Show CAPTCHA (Word Verification Image) on Login Page' option if you want users to be verified through CAPTCHA. You can enable CAPTCHA on the admin and end-user login pages, and also in the Reset Password and Unlock Account pages.

  4. Check the 'Single Sign-On' option

  5. Enable the 'Show Log Onto' option in order to allow the end-users to select the domain to which they belong.(This option is required in the case of ADSelfService Plus lodging multiple domains)

  1. Click on 'Save' to store the configured settings.

 


Single Sign-On :

 

Enable the end-users to login into this ADSelfService Plus application using their respective domain credentials instead of configuring a new set of login credentials.

 


Login CAPTCHA:

 

Enabling this setting will display a CAPTCHA image on the login page. End-users must enter the text shown in the CAPTCHA image in order to login to the self-service portal. Login CAPTCHA serves as a security measure against bot-based brute force attacks.

 

Steps to configure login CAPTCHA:

  1. Click on Logon Settings (Admin → Customize → Logon Settings)

  2. Select the option Show CAPTCHA (Word Verification Image) on Login Page.

  3. You can choose to enable captcha for the admin and domain user login page and reset password and unlock account login page.

  4. Click Captcha Settings link. Here you can configure whether to show captcha every time or only after a certain number of invalid login attempts.

  5. Select the option 'Show CAPTCHA after...' to enable captcha only after a certain number of invalid login attempts. Enter the number of invalid login attempts allowed and the time (in minutes) to reset the invalid login count.

  6. Select the option 'Show captcha every time' to display captcha every time someone tries to login to the product.

  7. Click Save.


Multi login Option:

 

By default, users can log in to ADSelfService Plus by entering their username and password. Alternatively, you can allow users to log in to ADSelfService Plus using their mobile number, email or any AD attribute which has a unique value in place of their username.

 

Steps to configure multi login option:

  1. Click on Logon Settings (Admin → Customize → Logon Settings)

  2. Check the 'Enable other unique attributes to login into the product' checkbox.

  3. Click 'Select Attribute list' link to select the AD attributes that can be used by end-users for logging in to ADSelfService Plus.

  4. By default, you have 3 attributes to choose from: i) mail ii) telephoneNumber and iii) userPrincipalName

  5. You can also add other AD attributes with unique values by entering the attribute's LDAP name in the 'Add Attributes' box.

  6. Note: Make sure that you choose an attribute whose value is unique across the domain. E.g.: sAMAccountName, email, telephoneNumber.

  7. Click 'Save' to finish.

 

IMPORTANT:

 

The following conditions must be considered while enabling multiple login option:

 

  1. If two users have the same value for any of the log in attribute, then both users will not be able to log in.
  2.  

  3. Attributes that have multiple data types as value like objectGUID, distinguishedName, etc., cannot be used as a log in attribute.
  4.  

Copyright © 2019, ZOHO Corp. All Rights Reserved.
ManageEngine