To configure the manager settings for accessing the Operator Control Panel:
Go to Security Settings (see Navigation). The Security Settings page is displayed.
Go to the Manager settings tab.
In the SignOn method list, select one of the following items and configure the selected method:
Click Update.
LDAP/AD
If the LDAP/AD item is selected in the SignOn method list:
In the Admin Dn field, enter the name of the administrator in LDAP/AD (for example, uid=admin,ou=Admins,dc=ldap,dc=activecloud,dc=com).
In the Admin Password field, enter the password for the administrator.
In the Host field, enter the to connect to the database for authentication.
In the Port field, enter the port number to connect to the database.
In the User Search Filter field, enter the parameter that is used to find a manager's login to the Operator Control Panel. This parameter is used to find a manager in LDAP/AD and check the password.
In the User Search Base field, enter the search base for managers.
To activate an SSL connection, turn On the
To activate verifying the SSL certificate, turn On the
In the Attributes synchronization group, set the mapping of the following manager's attributes with the LDAP/AD attributes:
Email — the field name in LDAP/AD that stores a manager's email.
Name — the field name in LDAP/AD that stores a manager's name.
If a manager's login was changed in Active Directory (AD) used by a reseller, the email (login) is synchronized in ActivePlatform.
In the Role's synchronization group, set the mapping of the following manager's roles with the LDAP/AD attributes:
Activate — turn On the switch to activate the roles' synchronization.
Role — the field name in LDAP/AD that stores a manager's role when the roles' synchronization is activated.
Default role — select the role of a manager set in ActivePlatform by default when the roles' synchronization is turned off.
OAuth 2.0
If the OAuth 2.0 item is selected in the SignOn method list:
In the OAuth Client field, enter the name of a client of the OAuth server.
In the OAuth Client Secret field, enter the secret key used by a client of the OAuth server.
In the OAuth Authorize Url field, enter the URL used when a manager tries to log in to the Operator Control Panel.
In the OAuth Get Access Token Url field, enter the URL used to get the access token.
In the OAuth Get Profile Url field, enter the URL used to get the manager's profile using the access token. The answer to this request contains a set of data including the manager's ID in OAuth. This ID is used to define a manager, which will get access to the ActivePlatform (a manager ID must be entered as the CAS user attribute in OAuth for all managers).
Embedded
If the Embedded item is selected in the SignOn method list:
To activate for the reseller signing in to the Operator Control Panel with a Microsoft account (see Signing in to the Operator Control Panel with Microsoft), turn On the Sign in via Azure AD (multi-tenant application) switch.
To configure the login rules to the Operator Control Panel, set the following options in the Login rule group:
Turn On the Activate switch.
In the Login attempts field, enter the number of attempts to log in with a wrong login or password.
In the Login unlock interval, minutes field, enter the period in minutes when a new attempt to log in will be available.
To configure the expiration rules of a password, set the following options in the Password expiration rules group:
Turn On the Activate switch.
In the Password Days to Expire field, enter the number of days when a manager need to change the password.
In the Notice Days field, enter the number of days before the password expiration when a reminder about the password expiration is displayed to a manager on an attempt to log in.
To configure the deactivation rules for a manager, set the following options in the Deactivation rules group:
Turn On the Activate switch.
In the Expire after Days field, enter the number of days after the last manager login when a manager will be deactivated.