Soffid 3 Reference guide
Reference Guide Soffid 3
🔎 Overview
Introduction The Soffid 3 reference guide wants to present all the functionality contained in ve...
Self service portal
Introduction to Self Service Portal
What is Self-Service Portal? Soffid Console provides the Self-Service Portal, where the end-user...
My tasks
Description Displays the task in which the user is involved like a supervisor, manager, o person...
My issues
Description Soffid provides a tool to manage all issues and allows you to perform the operations...
My applications
Description My application is a part of a Soffid Self-service portal that allows end-users to st...
My requests
Description Soffid provides a complete workflow engine that allows you to incorporate business p...
Process Search
Description A process is a series of actions, connected by transitions. An action could be eithe...
My accounts
Description My Account is a part of Soffid's self-service portal that allows end-users to access...
My OTP devices
Description My OTP devices are part of a Soffid Self-service portal that allows end-users to acc...
My certificates and FIDO tokens
Description My certificates and FIDO tokens are part of a Soffid Self-service portal that allows...
My Profile
Description My Profile is a part of a Soffid Self-service portal that allows to end-users config...
Global settings
Tenants
Definition Soffid 3 is multi tenant. This means that one can configure many differente tenants t...
Plugins
Definition Soffid provides you additional functionality that allows installing addons and server...
Look & feel
Definition Soffid's Look & feel page allows you to adjust the Console styles to your organizatio...
Soffid parameters
Definition Soffid allows you to customize the configuration of some attributes of the Console, S...
User Type
Description User type is the way to categorize users and allows configuring different password p...
Group Type
Description Companies are organized in different business units, departments or workgroups. In S...
Metadata
Description The Metadata functionality allows expanding the Soffid objects, their attributes, an...
User backup configure & restore
Configuration wizard
For more information, you can visit the Configuration wizard book For more information, you c...
Export settings and objects
Description Soffid has the functionality that allows you to export configuration, Soffid objects...
Import settings and objects
Description Soffid has the functionality that allows you to import configuration, Soffid objects...
Security settings
Authorizations
Definition Soffid console provides a granular access control system. That granular control syste...
Authentication
Definition Soffid could use different kinds of external authentication sources. These mechanisms...
Password policies
Definition Password domain Is a logical way of grouping managed systems that are sharing the sa...
Configure PAM session servers
PAM Rules
PAM Policies
Password recovery configuration
OTP settings
XACML Policy Management
XACML PEP configuration
Digital certificates
Definition Soffid includes Digital certificate functionality as a security enhancement. You coul...
Recertification policies
Issue policies
Definition Soffid has defined automatic events by default. For each of these events, it is possi...
Break-glass recovery configuration
Definition Break glass is the mechanism that allows users to gain emergency access to critical s...
Resources Management
Users
Description The user is the core object of the system. In Soffid, a user means an identity (usua...
Groups
Description Groups are a convenient way to apply policies to a collection of users. Groups allow...
Accounts
Description An account is the way an user is presented on a target system. There can be user ac...
Roles
Description Soffid allows you to create roles to specify permissions that can be assigned to a u...
Information systems
Description Information systems are the systems that Soffid will protect granting and revoking r...
Role assignment rules
Description Soffid console provides an option that allows you to customize policies to assign or...
Segregation of Duties (SoD)
Description The segregation of duties (SoD) is a fundamental element of internal controls, defin...
Networks
Description Operators can define the subnets that compose the internal network, in order to mana...
Hosts
Description The host screen lets the administrator manage a static IP address assigned to any ho...
Printers
Description Soffid lets administrator users manage system printers. A printer must always be att...
Mail Domains
Description The mail domains identify each single mail domain that is going to be managed. If a ...
Mail List
Description The mail lists identify addresses that are going to be delivered to one or more user...
Application access tree
Description The entry points could be to connect to information systems defined on Soffid, or to...
Password vault
Description Soffid provides a protected storage, to save and manage accounts for multiple applic...
Custom objects
Description The custom objects are the objects created by the administrator to extend the Soffid...
Integration Engine
Smart engine settings
Description The administrator users can decide the engine mechanism for the synchronization task...
Agents
Description Soffid agents are the tool that allows the connection between the Soffid console and...
Synchronization servers
Description Sync server is the engine responsible for connecting Soffid with data sources or man...
Account naming rules
Definition Account naming rules define how to generate account names to connect with final syste...
Attribute translation tables
Definition Soffid provides an easy to use mechanism to translate references or external codes in...
Soffid Objects
You can consult the list of Soffid attributes: User Object Account Object Group Object Ro...
Sample scripts
Note that Soffid supports different scripting languages, you can configure it in the Smart engi...
Utility classes
Crypt Crypt allows to encrypt text with different algorithms and verify the resulting hash. To ...
Network discovery
Tools
Clear redundant roles
Description A high level profile can contain or grant application permissions. On the other side...
Disable inactive users
Description Probably there are some users that do not need access to any information system. Usi...
Disable inactive accounts
Description Probably there are some accounts that are no longer used. Using this tool you will b...
Role mining
Monitoring and reporting
Sync server monitoring
Description Soffid provides a monitoring functionality to consult all the information of the dif...
Scheduled tasks
Description Schedule tasks display all the automatic tasks defined on Soffid, the scheduling of ...
Scheduled jobs
Description Schedule jobs display all the asynchronous tasks generated for the workflows engine....
Audit
Description The audit trail page allows you to query for audit records. Each action done at the ...
Access logs
Description The access log page allows querying all the information about the opened sessions. ...
Sessions
Description The sessions page displays the current open sessions made with ESSO, WSSO or PAM for...
Console log
Description That option allows you to look up server logs from the console. The logs are created...
Privileged accounts dashboard
Search in PAM recordings
Issues
Definition Soffid provides a tool to manage all issues and allows you to perform the operations ...
Common actions
Search Types
Description Throughout the Soffid you will be able to perform searches on the different objects ...
Column Selector
Description Throughout the Soffid Console, we can find a large number of list-type components. T...
Download CSV file & Import
Download CSV file Soffid allows you to download all data objects displayed in tables in a CSV fi...
Bulk actions
Description Allows massive operations to be performed on the selected records. With that operati...
Issue Actions
Actions Issues query action Download CSV file Allows you to download a CSV file with the...
Textual Index
Textual Index
Introduction A textual index is a data structure used in database systems to facilitate efficie...
Operation
Operation The Lucene index information is stored in files arranged in a folder structure. This f...
Lucene - Query Parser Syntax
Overview Terms Fields Term Modifiers Wildcard Searches Regular expression Searches Fu...
Use Case
This folder will contain information about different use cases