Advanced Search
Search Results
106 total results found
Smart engine settings
Description This page gathers several mechanisms related to soffid's smart engine. Administrator users will be able to configure the engine mechanism for synchronisation tasks; a task limit to prevent unsupervised mass changes; and the language of the script...
Agents
Description Soffid agents are the tool that allows the connection between Soffid and the target systems. To establish the connection with target systems, Soffid provides a large number of connectors that will be able to set up into the Soffid console. You co...
Synchronization servers
Description Sync server is the engine responsible for connecting Soffid with data sources or managed systems. Soffid allows you to configure different synchronization servers. These synchronization servers are installed and configurated using command line to...
Account naming rules
Definition Account naming rules define how to generate account names for target systems. The normal case is the account name will be the same as the user name, in other cases, here you could define the customized account name rules. When you are configuring ...
Attribute translation tables
Definition Soffid provides an easy to use mechanism to translate references or external codes into internal codes. For example, the HHRR application could be using a diferent coding scheme for business units. To deal with this data mismatch, users can extend...
Network discovery
Description The Network discovery tool will be in charge to scan the networks to find the hosts and retrieve information about user accounts. Network discovery can detect system accounts as well. First of all, you need to create the networks that you want to...
Soffid Objects (for agent mappings)
You can consult the list of Soffid attributes: User Object Account Object Group Object Role Object Grant Object Maillist Object Membership Object dispatcherService Authoritative change object User object A user objects are maps that hold the...
Sample scripts
Introduction Note that Soffid supports different scripting languages, you can configure it in the Smart engine settings screen. Soffid 4 configures the smart engine with Javascript scripting language as the default. Additionally, in the initial configuration...
Utility classes
Crypt Crypt allows to encrypt text with different algorithms and verify the resulting hash. To use this class: com.soffid.iam.crypt.Crypt All methods are static: hash(String algorithm, String text) -> String pBKDF2Sha256(String text, String utf8Salt, int ...
Configure Workflow engine
Description This page groups together several features related to the workflow engine. Document manager Soffid can use any document repository to store documents generated by workflows, reporting addon, or any other addon. The document repository can be ei...
Business process definition
Description Soffid includes a BMP (Business Process Management) in its Smart Engine to provide useful workflows integrated with the processes and the policies of the Soffid core. In order to add extra functionality to the console, you can upload different b...
BPM editor (addon bpm)
Description BPM is a technology that allows modeling, implementing, and executing processes automatically to enhance efficiency and productivity in support of enterprise goals. Soffid includes a BMP (Business Process Management) in its Smart Engine to provid...
Authorizations
Definition Soffid console provides a granular access control system. That granular control system allows the administrator user to assign granular permissions to roles. Be in mind that some permissions may inherit some other permissions. You cannot assign pe...
Authentication
Definition This page gathers different types of settings that may affect user authentication in the Soffid Console. Soffid could use different kinds of external authentication sources. These mechanisms could be selectively enabled or disabled. Screen overvi...
Password policies
Definition On this page, you can configure the password policies that will be applied when assigning a new password, always depending on the password domain selected by that system and the type of user selected. Therefore, the two main components of this pag...
Configure PAM session servers
Definition Soffid provides the functionality that allows you to configure the Jump servers. To configure that functionality is mandatory to install PAM following the instructions of the PAM installation page. A Jump server is the control point that forces u...
PAM policies
Definition Privileged Access Management (PAM) policies are a set of guidelines and controls that dictate how privileged access is granted, managed, and audited within an organization. Soffid allows you to define policies, those policies can be made up of sev...
PAM rules
Definition Soffid allows you to define rules to detect commands executed on a server. When a user launches a command defined on a rule, Soffid will detect it. To use those rules you need to define the PAM policies. For more information, you can visit the PAM...
Issue policies
Definition Soffid has defined automatic events by default. For each of these events, it is possible to define the tasks to be performed and configure them. Once the necessary issues have been configured, there are other screens for viewing and managing them....
Digital certificates (addon federation)
Definition Soffid includes Digital certificate functionality as a security enhancement. You could add new Digital certificates, internal or external. If you select the external certificate, you could add a valid certificate to Soffid; If you select the inter...