Configured User Accounts

Configured user accounts are custom user accounts that you configure on your system. They are regarded as a more secure way of accessing your system as they require manual entry of a username and password. Configured user accounts are used to access Geo SCADA Expert via ViewX, Virtual ViewX, Original WebX, and by third-party clients that support secure user access.

Typically, you create a configured user account for each user of your system. (The exception to this is if the servers on your system are configured to Create users automatically from group membership, in which case Geo SCADA Expert will create most of the user accounts automatically when triggered to do so. For more information, see Create User Accounts from a User Pattern.)

Each configured or automatically created user account is represented in the database by a User database item.

In the configuration of the User item, you can define various settings for the user account, including specifying whether the user account is managed directly in Geo SCADA Expert. (If a user account is associated with a Windows or LDAP user profile, password management is performed via the relevant Windows domain or LDAP server. If a user account is integrated with a Windows or LDAP user profile, the user's membership of Geo SCADA Expert User Groups is managed automatically (providing that the User Groups themselves are integrated with Windows domain groups or LDAP user groups). If the user account was created automatically, its initial settings are defined by a User Pattern.) Either way, when a user logs on to the system via the user account, they will need to enter the correct user name and password (the user name is the name you give to the User database item).

When a user logs on via a user account, they can only access those features that are made available to their user account. A user account has the following security permissions:

You also restrict, or provide, access to certain features via the User Form for each user account (see Creating a User Account). Changing the configuration of a user account does not affect security permissions, but can result in a user being able to, or being denied, access to certain features (even if they do have the necessary permissions). For example, if you configure a user's user account to have the Configure Database option clear (disabled), that user will not have access to any configuration Forms, even if the security settings for individual database items provide that user with the Configure permission. (In ViewX and Virtual ViewX, a user has to have access to both the feature and the relevant security permissions for the database items in order to perform their expected activities in Geo SCADA Expert. For more information, see Overview of User Account Security.)

To create and configure a ‘configured’ user account, see Creating a User Account.

To configure the settings for automatically created user accounts (if applicable to your system's setup), see Create User Accounts from a User Pattern.

If a user attempts to access the system without logging on via a user account, they might get logged on automatically via one of the Built-In User Accounts.

NOTICE

Security threat

On systems on which the 'Everyone' User Group is enabled, all User Accounts on the system automatically inherit the security permissions that are assigned to the 'Everyone' User Group, including the Guest user (which does not require a logon). Each user's security permissions comprise: Everyone permissions + User Group permissions + User Account permissions. To help avoid providing all users with unintended access to features and functionality that should be restricted, use configured User Groups rather than the 'Everyone' User Group. If the 'Everyone' User Group has to be used, it MUST be assigned the minimum permissions required, with access restricted where possible to just the relevant parts of the database. (On new installations, the built-in 'Everyone' User Group is inactive and is not assigned any security permissions by default.)
Failure to follow these instructions can result in equipment damage and a breach in system security.

Further Information

User Accounts for Third Party Applications.

Permissions for Working with User Accounts and User Groups.

Organize your Users and User Groups.

Creating a User Account.

Create User Accounts from a User Pattern.

Allocating Security Permissions.

Logging On and Off via a User Account.

Changing the Password of a User Account.


Disclaimer

Geo SCADA Expert 2022