Additional User Administration Procedures

Prerequisites:

  • System Manager is in Engineering mode.
  • System Browser is in Management View.
  • Project > System Settings > Users is selected.
  • An own created user group is available.

 

Change a Password

You are not logged on with a Windows account but as a local user.

  1. In the Users list, select a user.
  1. In the Change Password expander, enter a new password.
  1. Confirm the new password.
  • Apply is enabled if the password matches.
  1. Click Apply.
    NOTE: The password cannot be saved with .
  • The new password is saved.

 

Disable Default User Administrator

Scenario: For security reasons, the DefaultAdmin account must be disabled when handing over a project to the customer.

  • There is an administrator user account available that has the same comprehensive rights as the DefaultAdmin account.
  • You are not logged in as DefaultAdmin.
  1. In the Users list, select DefaultAdmin.
  1. Clear the Enabled check box.
  1. Click Save .
  • The DefaultAdmin user is disabled and cannot log on to Desigo CC.
Information

NOTE:
You can re-enable the DefaultAdmin account at any time with the appropriate user rights.

 

Disable User
  1. In the Users list, select a user or use multi-select by pressing the CTRL or SHIFT key.
  1. Clear the Enabled check box for the user.
    NOTE: When you use multi-select, the check box next to the last selected user takes on the master function. Checking or clearing it, checks or clears the check boxes of all selected users.
  1. Click Save .
  • The user is disabled and cannot logon to Desigo CC.
  • A history log entry is created for each disabled user.
Information

NOTE:
You cannot disable the account you are logged on with.

 

Modify a User
  1. In the Users list, select a user.
  1. Change the desired settings for the user.
  1. Click Save .
  • The user is modified.

 

Reset a Temporarily Locked Local/Global User

Scenario: The user has entered an incorrect password multiple times. When he exceeds the number of logon attempts configured in the Attempts allowed field, the user account is locked for 5 minutes. To unlock his account, the user needs to wait for 5 minutes or contact the Desigo CC administrator to have his user account unlocked.
NOTE:
a. After the waiting period of 5 minutes, only one logon attempt is possible. If an incorrect password is entered, the account will be locked for another 5 minutes.
b. Every successful logon attempt on an access point will reset the value of the Failed Attempts field, for that particular access point only.
c. If a user using a WSI type of access point is locked, then still the same user can logon to the another WSI/AFW/CCOM access point.

 

  • You have the adequate level of Application Rights for the Users Configure application.
  1. In the Users list, select the locked user.
  1. In the Client Access Point Settings expander, click Reset.
  1. Click Save .
  • All the failed attempts for all the access points, used by a Desigo CC. user is reset to zero and the user is unlocked for all the access points.
Information

NOTE 1:
After the waiting period of 5 minutes, only one logon attempt is possible. If an incorrect password is entered, the account will be locked for another 5 minutes.
NOTE 2:
Every successful logon attempt on an access point will reset the value of the Failed Attempts field, for that particular access point only.
NOTE 3:
If a user using a WSI type of access point is locked, then still the same user can logon to the another WSI/AFW/CCOM access point.

 

Change User Account Type

An existing local user can be changed to a Windows user (or vice versa). The existing user settings are retained.

  1. In the Users list, select a user.
  1. Click Edit .
  1. Select one of the following user types:
  1. Click OK.
  1. Click Save .
  • The user account is changed and you can log on to Desigo CC.

 

Sort Users
  1. Click the Users column header.
  • Users are sorted alphabetically from A-Z.
  1. (Optional) Click the Users column header again.
  • Users are now sorted alphabetically from Z-A.

 

Remove a User Group from a User
  1. In the Users list, select a user.
  1. In the User Configuration expander, highlight the appropriate user group.
  1. Click Remove.
  1. Click Save .
  • The user no longer has any rights from the unassigned user group.

 

Search for Users with no Groups Assigned
  • Click User with no groups .
  • The users without user group assigned are filtered.

 

Delete Users
  1. In the Users list, select a user or use multi-select by pressing the CTRL or SHIFT keys.
  1. Click Delete .
  • A confirmation message box displays with the number of selected users.
  1. Click Yes.
  • The user is deleted and can no longer logon.
  • A history log entry is created for each deleted user.

 

Promote a Local User to a Global User

Scenario: In a distributed system, a local user must be promoted to a global user.

  1. In the master system, select Project > System Settings > Users.
  1. Select the Users tab.
  1. In the Users list, select a user.
  1. Click Promote .
  1. Click Yes.
  • The promoted user has access to the distributed system.

 

Demote a Global User to a Local User

Scenario: In a distributed system, a global user must be demoted to a local user.

  1. In the master system, select Project > System Settings > Users.
  1. Select the Users tab.
  1. In the Users list, select a user.
  1. Click Demote .
  1. Click Yes.
  • The demoted user has access to the local system only.

 

Configure Identity Provider for OpenID Users

 

  • You have requested an account by an identity provider and have received the required information.
  1. Select Project > System Settings > Users.
  1. Select the Identity Provider tab.
  1. In the Domain field, enter the domain link, for example, abc.def.xyz.
  1. In the ID Server Domain field, enter the ID Server domain, for example, abc.def.xyz.
  1. In the Client ID field, paste the client ID information received by email from the identity provider.
  1. In the Client secret field, paste the client secret information received via email from the identity provider.
  1. (Optional) To set a code endpoint as a token endpoint, clear the Default properties check box.
    a. In the Code endpoint field, enter the required information.
    b. In the Token endpoint field, enter the required information.
    c. In the Logout endpoint field, enter the required information.ot
  1. Click Save .
Information

NOTE 1:
Desigo CC only supports Auth0 Identity Provider.

NOTE 2:
The URL links refer to API addresses. When clicked, a browser window with an error message will display. It is, however, possible to check the connection to the server.