Unregistered User mechanism
Unregistered User Mechanism in eCatalog
Managing Access for Unregistered AD Users:
The Unregistered User Mechanism in eCatalog provides flexible management of users who can authenticate via Active Directory (AD) but are not yet registered in the eCatalog system. This feature is crucial for controlling access and streamlining user integration in environments using SSO.
Key Actions for Unregistered User Access:
- Login as Visitor:
- Limited Access: Unregistered users logging in through AD can be assigned a Visitor role, which grants them access only to a limited set of pages or resources. This role is useful for users who need temporary or restricted access without full user privileges.
- Auto Register:
- Seamless Integration: The system can automatically register unregistered users upon their first login attempt. Once registered, these users gain normal access permissions according to the default or specified user settings within eCatalog. This method facilitates smooth on-boarding and immediate productivity.
- Redirect to Registration Page:
- User Initiated Registration: Alternatively, unregistered users can be redirected to a special registration page or form. This option is ideal for environments where additional information might be required from the user before granting access.
- Deny Access:
- Restricted Entry: If the system policy does not permit unregistered users to access the system, they can be outright denied entry. This setting ensures that only users who are formally registered and recognized by the system can access its resources.
Benefits of the Unregistered User Mechanism:
- Enhanced Security
By managing how unregistered users access the system, eCatalog helps maintain secure and controlled environment, ensuring that only authorized and appropriately registered users can access sensitive resources. - Flexible Access Control
This mechanism allows organizations to tailor user access strategies based on their specific operational and security needs, from completely open to highly restricted. - Streamlined User Management
Automatically registering users or directing them to registration forms simplifies the user management process, reducing administrative overhead and improving user experience.
Implementing Unregistered User Settings:
Configuration Flexibility: Administrators can configure the behavior of the unregistered user mechanism via the eCatalog’s administrative dashboard. Settings include defining default roles, access permissions, and the specific actions taken when an unregistered user attempts to log in.
Compliance and Auditing: The ability to track and manage unregistered user interactions ensures compliance with data protection regulations and facilitates auditing of access patterns and security protocols.
When eCatalog is used for Single-sign-on to Active Directory (AD), the system can decide what kind of access we provide to the unregistered user.
Unregistered users are users who can login to AD, however, user is not added to User List yet.
Following are actions that system can do when unregistered user access the website:
- Login as Visitor. When assigning the user to Visitor role, he can only access limited pages/resource.
- Auto Register. System will automatically add/register user into system, and then unregistered user now become registered user who can access the system per normal
- Redirect Page. System will just redirect to special page such as registration form if any
- Deny Access. System does not allow unregistered user to access