System settings - Authentication

System settings, Authentication tab

Product line

Standard

|

Expert

Operating mode

CLOUD ABO

|

ON-PREMISES

Modules

Services & CRM

Budget & Phases

Purchases

Resource Planning

Business Intelligence

Created: 14.11.2016
Updated: 14.03.2024 | Message when deactivating Vertec login with blank password added.

LDAP administrator

Here, a Vertec user must be defined as LDAP administrator. All Vertec administrators are available.

This user is always authenticated directly via their Vertec login. Therefore, the access to Vertec is possible for the admin even without an available LDAP server.

PropertyName: LDAPAdminObjectProperty .

LDAP authentication against domain

The domain name that users can use to authenticate themselves.

PropertyName: Require2FA. BooleanProperty .

LDAP server address

The server address of the LDAP server without port.

PropertyName: LDAPServerAddress. StringProperty .

LDAP server port

The port on which the LDAP server can be reached. If empty, the default port 636 is taken.

PropertyName: LDAPServerPort. StringProperty .

LDAPS certificate thumbprint

The thumbprint of the LDAP server certificate. If this thumbprint does not match the thumbprint when connecting to the LDAP server, the connection is denied.

From version 6.5.0.16, the thumbprint only has to be entered if the LDAP server does not have a trusted certificate. In other words, if the operating system accepts the certificate as being valid, there is no need for a thumbprint check. For further information about certifications, refer to cloud server.

PropertyName: LDAPSCertThumbprint. StringProperty .

OpenID Connect active

Controls whether OpenID Connect  is active. If yes, it is only possible to log into Vertec via OpenID Connect.

PropertyName: OidcActive. BooleanProperty .

OpenID Connect Authority

The unique URL for authentication via OpenID Connect. In the case of Azure AD, this is a URL of the form https://login.microsoftonline.com/some.tenant/v2.0 , where the some.tenant part of your own Azure tenant is, i.e. the domain under which the Microsoft 365 environment exists, e.g. meinefirma.onmicrosoft.com.

PropertyName: OidcAuthority. StringProperty .

OpenID Connect Client ID

The client ID, under which Vertec was registered with the identity provider .

PropertyName: OidcClientId. StringProperty .

OpenID Connect Redirect URL

The web callback URL with which Vertec was registered with the identity provider .

PropertyName: OidcRedirectUrl. StringProperty .

Use 2FA for cloud clients (Vertec and LDAP)

Activates the 2 factor authentication (2FA).

PropertyName: Require2FA. BooleanProperty .

Configurable password policy

These options can be used to preset the password requirements as well as the password minimal length. For detailed information, see the article on login.

Allow log in with empty Vertec password

As of version 6.7, only with existing Vertec installations.

From Vertec 6.7, it is no longer possible to log into Vertec with a blank password for new installations. To ensure that everything runs the same as before after an update of existing versions, this system setting is available with the default value Yes.

We recommend changing this in existing installations as well.

To change the setting to No, the administrator (entry ID UserAdmin) must have a password, otherwise you get the message:

If there is no user with this entry ID in the system, the message “Please make sure that there is at least one administrator user with a set password.” appears.

If you change the setting to No, the system checks whether there are any users in the system without a password. If so, a warning dialog appears:

We recommend that you also set the minimal Vertec password length to a certain quantity of symbols, so that the user can no longer set it to blank when changing the password (and thus no longer log in).

PropertyName: CanHaveEmptyPassword. BooleanProperty .

Vertec password requirements

The requirements for Vertec passwords can be defined here. The following options are available:

  • None
  • Uppercase and lowercase
  • Uppercase, lowercase and digits
  • Uppercase, lowercase, digits and special characters

PropertyName: PasswordRequirements. SelectionProperty .

Vertec password minimal length

Here, you can enter a minimal length which the passwords must have.

For new installations from Vertec 6.7, the default is 6.

PropertyName: PasswordLength. IntegerProperty .

Bitte wählen Sie Ihren Standort