Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Published by Scroll Versions from space WADMINPAS and version 23.2

...

User Self Registration 
  • Currently only in use in relation with API Developer Portal.
  • Enables visitors of your API Developer Portal to register for a new account.
  • If enabled, the related registration page contents can also be adapted, see Registration page.
Enable feature
PAS Component
Standard InstallationCustomization Options

PAS Platform

Login Page

Anchor
registration
registration

PAS standard layout

  • background image
  • colors
  • favicon
  • language
  • logo
  • text (content and font settings)

Registration Page 

Disabled
  • background image
  • colors
  • favicon
  • language
  • logo
  • text (content and font settings)
API Management


API Developer Portal

PAS standard layout
  • additional menu entries
  • colors
  • favicon
  • footer
  • header image
  • language
  • license agreement link
  • text (content and font settings)

Creation of Organizations

Only users with role Administrator are able to create organizations in API Management.
  • For further information, go to API Management Guide > Creating an Organization.
  • EnabledDisable feature
    (allow all users the creation of organizations)

    Email Notifications

    EnabledDisable feature

    Identity Management

    Anchor
    user_selfuser_selfDisabled

    Email Notifications

    • Notification mails send to users, e.g. when the "Forgot Password" link on the login page is used.
    PAS standard text

    Text and layout of the following emails are adaptable:

    • Answer to "Forgot Password" request
    • Answer to self registration request

    Security Hardening

    • Brute Force detection
    • Security headers
    • OTP (2FA) could also be configured in Keycloak admin console to force requirement setting up e.g. Google authenticator app for logging in.
    • Brute force detection: disabled
    • Security headers: ensures PAS is working
    • OTP (2FA): disabled
    • Enable brute force detection
    • Security headers can be changed to customer needs
    • Enable OTP (2FA)

    Federation Configuration

    • Scheer PAS uses its own user database/management. However, LDAP can be configured so existing user acocunts can be imported in PAS. Furthermore SAML2.0 as well as OpenID Connect links can be established to provide auto-provisioning of users.
    • Also another Keycloak instance can be relayed.
    PAS User Management
    • LDAP
    • Customer Keycloak