Password Management


Passwords are a means of authentication for a resource or service whose access is restricted and protected. Passwords are required in three areas in Product name - ev itsm.png:

  • For administration
  • For employees
  • For data source integration

For security reasons, all administration passwords and employee passwords can be encrypted using the EasyCrypt utility.

Passwords for administration

Passwords are stored in the configuration files of Logo - EasyVista.png services and in certain EVO_* database tables.

Notes:

  • No specific configuration is required for implementing encryption. Passwords can be encrypted on the fly using EasyCrypt and then stored manually in administration files or tables. Open url.png See the procedure.

List of files or tables secured using passwords

File/Table Attribute
smoBackOffice.cfg [POP3 Connect]
[SQL Connection]
smoServer.ini Password
smoTranslator.ini Password
Owner_Password
EVO_ADMIN.A_COMPANY ADMIN_PWD
CONFIG_OWNER_PASSWORD
CONFIG_PASSWORD
DATAONLINE_OWNER_PASSWORD
DATAONLINE_PASSWORD
REFERENCE_OWNER_PASSWORD
REFERENCE_PASSWORD
LDAP_PWD
EVO_ADMIN.A_PARAMETERS BackOffice_Owner_Password
BackOffice_Password
DOCUMENT_SHARE_PASSWORD
FTP_PASSWORD
PORTAL_PWD
PROCEDURE_OWNER_PASSWORD
PROCEDURE_PASSWORD
SMTP_PASSWORD
SMTPPassword
EVO_DATA.AM_PARAMETER MAPI_PASSWORD
EVO_DATA.SD_MAILBOX User_password

Passwords for employees

Passwords are stored in the AM_EMPLOYEE table in the EVO_DATA database. They enable you to check the identity of users who request access to an application or function that requires authentication, e.g. Product name - ev itsm.png, technical support agent, web services, etc.

Notes

  • The AM_EMPLOYEE table is able to manage both encrypted and non-encrypted passwords.
  • You can implement password encryption at any time.
    • During the installation of the functionality, all existing passwords are considered to be non-encrypted. You can then:
      • Best Practice icon.png  Reinitialize and replace them with a generic encrypted password.
      • Keep and encrypt them.
      • Keep them without modifying them.
    • Once the functionality is installed, all new passwords are automatically encrypted.
      • Users will always enter passwords in plain text in all user interfaces.
      • Encryption is performed automatically and transparently before the password is stored in the database.

Passwords for data source integration

Passwords are stored in integration models using connection strings to databases. They are read when the database is being accessed.

Procedures

How to assign a password to an employee

1. Select Administration > Access Management > Employees in the menu.

2. Open the user form you want or select it in List mode. Next, run the Change password wizard. Note: You can also run the wizard by selecting Directory > Employees in List mode.
         Change password wizard.png

3. Enter and confirm the password to be assigned. Next, click [ FINISH ].

4. Send an email to inform the employee of the new password. It is effective the next time the user logs in to Product name - ev itsm.png.

How to define a password policy

1. Select Administration > Access Management > Employees in the menu and run the Definition of password policies wizard. Caution: The configuration performed in the wizard applies automatically to all users, even if you only make a partial selection of users from the list.
         Password Policies wizard.png

How to implement employee password encryption

Note: This procedure is intended exclusively for customers using the On-Premise Product name - ev itsm.png version. SaaS customers should submit a change request to the Logo - EasyVista.png Support Team to enable encryption for employee passwords.

1. Enable the password encryption functionality for employees by configuring the A_COMPANY table in the EVO_ADMIN database. All new passwords will automatically be encrypted.

2. For all existing passwords, you can:

  • Best Practice icon.png  Reinitialize and replace them with a generic encrypted password. Open url.png See the procedure.
  • Keep and encrypt them. Caution: This method is not supported by the Logo - EasyVista.png Support Team because it may result in the loss of all passwords in the event of a manipulation error. Open url.png See the procedure.
  • Keep them without modifying them.

 

How to force the expiration of all existing user passwords

Note: This procedure is intended exclusively for customers using the On-Premise Product name - ev itsm.png version. SaaS customers should submit a change request to the Logo - EasyVista.png Support Team to enable encryption for employee passwords.

1. Select Administration > Access Management > Employees in the menu and run the Definition of password policies wizard. Caution: The configuration performed in the wizard applies automatically to all users, even if you only make a partial selection of users from the list.

  • Select the Enforce All Password Expiration box.
  • Specify the other options based on your password policy and click [ FINISH ]. The last update date for the password found in the PASSWD_LAST_UPDATE_UT column in the AM_EMPLOYEE table will be reset to a blank value.

2. Send an email to all employees informing them of their new password.

3. The next time AM-EMPLOYEE users log in to an Product name - ev itsm.png application or function that requires authentication, they will be asked to enter a new password.

  • User should enter the generic password sent by email in the Previous password field.
  • The last update date for the password will be refreshed.
             Password - New.png

How users can change their own password

ChangePassword

1. In the user information zone, roll your mouse over the Profile field Black Down arrow icon.png. The user's personal information will appear.
         Fundamentals - User management zone - Little.png

2. Select Password close icon.png Change My Password.
         Change password.png

3. Enter your old password. Next, enter and confirm your new password.

4. Log out of Product name - ev itsm.png. Log in again using your new password.

How to request a new password if the password is forgotten

ForgotPassword

1. In the Product name - ev itsm.png login page, click Forgot your Password?
         Forgot password.png

2. Enter your login or email address and click [ SEND ]. A temporary password will be sent to your email address.

3. Log in to Product name - ev itsm.png using the temporary password. Note: If you attempt to use the temporary password once the validity period has been exceeded, a login page will invite you to enter and replace it immediately.

4. Modify the password via the user information zone > Password close icon.png Change my Password option.

Tags:
Last modified by Philippe Franck on 2017/04/03 15:23
Created by Administrator XWiki on 2015/04/15 17:03

Shortcuts

Recent Updates

Haven't been here in a while? Here's what changed recently:

-   Product name - ev itsm.png
-   Product name - ev sas.png

Interesting Content

How to Automate Integration
Add a Shortcut to an App
History
Quick Dashboard
Full text search - Stop Words

Powered by XWiki ©, EasyVista 2018