Self-service Directory Update Examples
There’s so many ways you can improve your processes & systems
Self-Service Password Reset
Studies indicate that the help desk overhead of resetting passwords equates to £15-20 per request.
You can now eliminate this cost by providing a secure, web-based self-service facility via which they can reset forgotten passwords.
Users can enrol in the auto password reset service by giving responses to configurable security questions such as ‘Mother’s maiden name’, favourite colour, etc. The answers are encrypted and stored in the user’s AD object.
In the event that a user forgets their password, they can use any browser to securely reset their password or unlock their account, significantly reducing downtime and reducing the burden on the help desk.
Streamline security authorisation tasks
When looking for a quick and convenient way for its staff to authenticate with its screen-based room and desk booking system, our customer wanted to use its existing building security cards, but their card system was totally separate from Windows authentication and AD.
Using on-screen instructions and industry-standard card-reader technology, staff could be guided through the process of registering their Card and then entering their Windows credentials.
The card credentials were then securely stored alongside the relevant AD record for the card holder, enabling future bookings and check-ins with a simple card swipe.
Self-Service Profile Maintenance
If enabled, Microsoft 365 users can already update their own profile with information that includes job title, avatar photo, contact numbers, past experience and more.
There are situations, however, where your enterprise may wish to prevent self-service updates (for example, to block use of unprofessional photos). There may be also be custom AD attributes you want to use, e.g., to show preferred pronouns, which not available for end users to update.
You can now provide a secure, web based portal via which users can update specified AD attributes.
Responsibility for managing profile information can also be delegated to named users. For example, a designated HR role could be given permission to update properties (such as photos) on behalf of co-workers, following approval.
Technical Information
Features & Platforms
Interface Features
- Installed and operational in less than 5 minutes
- Major browsers supported IE (10 or better), Chrome & Firefox
- Complete configuration through a web browser
- Full templating support. Built in form editor
- No Cookie – session management
- SMTP notification of events
- Syslog support
- Thumbnail JPEG photo support
- No need to set individual user account permissions
- AES256 encryption of sensitive data
Supported Directories
- Support for ALL LDAP directories (Active Directory, Open LDAP, Active
- Directory (2008 or later) Domain Controller, ADAM etc).
- Includes a pre-configured template for Active Directory, Exchange & AD LDS attributes. Additional directory type templates will be included in a future release.
- LDAP v3 support with SSL.
- Support for custom & non-standard LDAP schemas.