[{"data":1,"prerenderedAt":1240},["ShallowReactive",2],{"navigation_docs_en":3,"-en-admin-users":180,"-en-admin-users-surround":1235},[4,21,37,68,101,137],{"title":5,"icon":6,"path":7,"stem":8,"children":9,"page":20},"Authentication","i-heroicons-lock-closed","\u002Fen\u002Fauthentication","en\u002F0.Authentication",[10,15],{"title":11,"path":12,"stem":13,"icon":14},"Login","\u002Fen\u002Fauthentication\u002Flogin","en\u002F0.Authentication\u002F1.Login","mdi-login",{"title":16,"path":17,"stem":18,"icon":19},"My profile","\u002Fen\u002Fauthentication\u002Fmyprofile","en\u002F0.Authentication\u002F2.MyProfile","mdi-account-circle",false,{"title":22,"icon":23,"path":24,"stem":25,"children":26,"page":20},"Realtime","mdi-clock-fast","\u002Fen\u002Frealtime","en\u002F1.realtime",[27,32],{"title":28,"path":29,"stem":30,"icon":31},"Asset Overview","\u002Fen\u002Frealtime\u002Fassetoverview","en\u002F1.realtime\u002F1.AssetOverview","mdi-monitor-dashboard",{"title":33,"path":34,"stem":35,"icon":36},"Alarms","\u002Fen\u002Frealtime\u002Falarms","en\u002F1.realtime\u002F2.Alarms","mdi-bell-alert",{"title":38,"icon":39,"path":40,"stem":41,"children":42,"page":20},"Analysis","mdi-chart-bar","\u002Fen\u002Fanalysis","en\u002F2.analysis",[43,48,53,58,63],{"title":44,"path":45,"stem":46,"icon":47},"Trend","\u002Fen\u002Fanalysis\u002Ftrend","en\u002F2.analysis\u002F1.Trend","mdi-chart-line",{"title":49,"path":50,"stem":51,"icon":52},"Events","\u002Fen\u002Fanalysis\u002Fevents","en\u002F2.analysis\u002F2.Events","mdi-event-note",{"title":54,"path":55,"stem":56,"icon":57},"Wind analysis","\u002Fen\u002Fanalysis\u002Fwindanalysis","en\u002F2.analysis\u002F3.WindAnalysis","mdi-windsock",{"title":59,"path":60,"stem":61,"icon":62},"Data completeness","\u002Fen\u002Fanalysis\u002Fdatacompleteness","en\u002F2.analysis\u002F4.DataCompleteness","mdi-chart-timeline-variant",{"title":64,"path":65,"stem":66,"icon":67},"Downtime manager","\u002Fen\u002Fanalysis\u002Fdowntimemanager","en\u002F2.analysis\u002F5.DowntimeManager","mdi-progress-alert",{"title":69,"icon":70,"path":71,"stem":72,"children":73,"page":20},"KPI","mdi-speedometer","\u002Fen\u002Fkpi","en\u002F3.kpi",[74,79,84,96],{"title":75,"path":76,"stem":77,"icon":78},"Energy Production","\u002Fen\u002Fkpi\u002Fenergyproduction","en\u002F3.kpi\u002F1.EnergyProduction","mdi-meter-electric-outline",{"title":80,"path":81,"stem":82,"icon":83},"Equivalent Hours","\u002Fen\u002Fkpi\u002Fequivalenthours","en\u002F3.kpi\u002F2.EquivalentHours","mdi-timer-sand",{"title":85,"path":86,"stem":87,"children":88,"icon":90},"Performance Ratio","\u002Fen\u002Fkpi\u002Fperformanceratio","en\u002F3.kpi\u002F3.PerformanceRatio\u002Findex",[89,91],{"title":85,"path":86,"stem":87,"icon":90},"mdi-weather-sunny",{"title":92,"path":93,"stem":94,"icon":95},"PR targets","\u002Fen\u002Fkpi\u002Fperformanceratio\u002Ftargets","en\u002F3.kpi\u002F3.PerformanceRatio\u002F1.targets","mdi-target",{"title":97,"path":98,"stem":99,"icon":100},"Under\u002FOver Performance","\u002Fen\u002Fkpi\u002Funderoverperformance","en\u002F3.kpi\u002F4.UnderOverPerformance","mdi-gauge",{"title":102,"icon":103,"path":104,"stem":105,"children":106,"page":20},"Admin","mdi-gear","\u002Fen\u002Fadmin","en\u002F4.admin",[107,112,117,122,127,132],{"title":108,"path":109,"stem":110,"icon":111},"Roles and Zones","\u002Fen\u002Fadmin\u002Frolesandzones","en\u002F4.admin\u002F1.rolesAndZones","mdi-shield-account",{"title":113,"path":114,"stem":115,"icon":116},"Users","\u002Fen\u002Fadmin\u002Fusers","en\u002F4.admin\u002F2.users","mdi-account-multiple",{"title":118,"path":119,"stem":120,"icon":121},"Activity Log","\u002Fen\u002Fadmin\u002Flogs","en\u002F4.admin\u002F3.logs","mdi-history",{"title":123,"path":124,"stem":125,"icon":126},"Identity providers","\u002Fen\u002Fadmin\u002Fidentityprovider","en\u002F4.admin\u002F4.identityProvider","mdi-fingerprint",{"title":128,"path":129,"stem":130,"icon":131},"Dashboard","\u002Fen\u002Fadmin\u002Fdashboard","en\u002F4.admin\u002F5.dashboard","mdi-view-dashboard",{"title":133,"path":134,"stem":135,"icon":136},"License","\u002Fen\u002Fadmin\u002Flicense","en\u002F4.admin\u002F6.license","mdi-certificate-outline",{"title":138,"icon":139,"path":140,"stem":141,"children":142,"page":20},"Configurator","mdi-wrench","\u002Fen\u002Fconfigurator","en\u002F5.configurator",[143,148,153,165,170,175],{"title":144,"path":145,"stem":146,"icon":147},"Data Acquisition","\u002Fen\u002Fconfigurator\u002Finstances","en\u002F5.configurator\u002F1.instances","mdi-database",{"title":149,"path":150,"stem":151,"icon":152},"System Operators","\u002Fen\u002Fconfigurator\u002Fsystemoperators","en\u002F5.configurator\u002F2.systemOperators","mdi:account-cog",{"title":154,"path":155,"stem":156,"children":157,"icon":159},"Models","\u002Fen\u002Fconfigurator\u002Fmodels","en\u002F5.configurator\u002F3.models\u002Findex",[158,160],{"title":154,"path":155,"stem":156,"icon":159},"mdi-notebook",{"title":161,"path":162,"stem":163,"icon":164},"Model detail","\u002Fen\u002Fconfigurator\u002Fmodels\u002Fdetail","en\u002F5.configurator\u002F3.models\u002F1.detail","mdi-notebook-outline",{"title":166,"path":167,"stem":168,"icon":169},"Wizard Plants","\u002Fen\u002Fconfigurator\u002Fwizardplants","en\u002F5.configurator\u002F4.wizardPlants","mdi-file-tree",{"title":171,"path":172,"stem":173,"icon":174},"Synoptics","\u002Fen\u002Fconfigurator\u002Fsynoptics","en\u002F5.configurator\u002F5.synoptics","mdi-image-multiple",{"title":176,"path":177,"stem":178,"icon":179},"System Checks","\u002Fen\u002Fconfigurator\u002Fsystemchecks","en\u002F5.configurator\u002F6.systemChecks","mdi:shield-check",{"id":181,"title":113,"body":182,"description":1228,"extension":1229,"links":1230,"meta":1231,"navigation":1232,"path":114,"seo":1233,"stem":115,"__hash__":1234},"docs_en\u002Fen\u002F4.admin\u002F2.users.md",{"type":183,"value":184,"toc":1194},"minimark",[185,191,199,229,240,243,248,251,313,321,363,366,368,372,375,450,456,464,466,470,476,481,484,520,527,531,534,544,547,551,555,558,593,596,599,602,608,610,614,617,621,626,633,687,690,710,717,720,722,726,730,735,738,754,758,764,771,791,798,805,808,824,828,838,855,858,875,880,888,903,907,914,921,924,928,934,937,955,958,966,968,971,975,984,987,1032,1036,1039,1061,1064,1070,1072,1075,1081,1089,1092,1104,1107,1109,1113,1116,1162,1167,1169,1173,1177,1184,1188],[186,187],"u-color-mode-image",{"alt":188,"dark":189,"light":190},"Users page","\u002Fassets\u002Fimg\u002Fdocs\u002FadminTools\u002Fusers\u002Fusers-dark.png","\u002Fassets\u002Fimg\u002Fdocs\u002FadminTools\u002Fusers\u002Fusers-light.png",[192,193,194,195,198],"p",{},"The ",[196,197,113],"strong",{}," page allows you to:",[200,201,202,206,216,223],"ul",{},[203,204,205],"li",{},"create and edit users",[203,207,208,209,212,213],{},"assign ",[196,210,211],{},"roles"," and ",[196,214,215],{},"access zones",[203,217,218,219,222],{},"manage ",[196,220,221],{},"login credentials"," (multiple per user)",[203,224,225,226],{},"manage the user's ",[196,227,228],{},"Two-Factor Authentication (2FA)",[230,231,194,232,235,236,239],"tip",{},[196,233,234],{},"Sessions"," tab lists the user's active sessions and lets authorized users end them. The ",[196,237,238],{},"Activity"," tab shows the user's activity log (defaulted to the last 30 days).",[241,242],"hr",{},[244,245,247],"h2",{"id":246},"users-list","Users list",[192,249,250],{},"Users are displayed as cards. Each card shows the main information:",[200,252,253,259,274,279],{},[203,254,255,258],{},[196,256,257],{},"Avatar"," with the user's initials (first and last name)",[203,260,261,264,265,269,270,273],{},[196,262,263],{},"Username"," (prefixed with ",[266,267,268],"code",{},"@",") with the ",[196,271,272],{},"User ID"," icon next to it for copying the identifier to clipboard",[203,275,276],{},[196,277,278],{},"First and Last name",[203,280,281,284,285,289,290,293,294],{},[196,282,283],{},"Status"," (e.g. Active, Disabled, Blocked): indicates whether the user can access the system. If the status is ",[286,287,288],"em",{},"Blocked",", hovering over the badge shows the ",[196,291,292],{},"blocked reason",".\n",[200,295,296,302,308],{},[203,297,298,301],{},[196,299,300],{},"Active",": the user is enabled and can log in.",[203,303,304,307],{},[196,305,306],{},"Disabled",": the user is disabled and cannot log in.",[203,309,310,312],{},[196,311,288],{},": the user is blocked for security reasons or by an administrator's decision. This status is used to temporarily prevent access, for example after suspicious activity or an administrative action.",[314,315,316,317,320],"warning",{},"Automatic blocking mechanisms (for example after too many failed login attempts) are ",[196,318,319],{},"not implemented yet",".",[200,322,323,329,335,340,351,357],{},[203,324,325,326],{},"Assigned ",[196,327,328],{},"Role",[203,330,331,332],{},"Enabled ",[196,333,334],{},"Zones",[203,336,337],{},[196,338,339],{},"E-mail",[203,341,342,343,346,347,350],{},"Account ",[196,344,345],{},"expiration date"," (",[286,348,349],{},"Expires","), if configured — highlighted in red if the account has expired",[203,352,353,356],{},[196,354,355],{},"2FA badge",", if Two-Factor Authentication is enabled for the user",[203,358,359,362],{},[196,360,361],{},"Identity Provider badges"," for the associated credentials (Internal, LDAP, SSO — up to 2 providers are shown; if there are more, the remaining count is displayed as \"+N\")",[192,364,365],{},"Clicking on a user card opens the user details, where (if authorized) you can edit profile and security settings.",[241,367],{},[244,369,371],{"id":370},"search-and-filters","Search and filters",[192,373,374],{},"At the top of the page you can quickly find users and narrow down the list:",[200,376,377,387,405,413,421,427,437],{},[203,378,379,382,383,386],{},[196,380,381],{},"Search",": ",[286,384,385],{},"Filter users…"," — filters by first name, last name, username, email and identity provider name",[203,388,389,382,392,394,395,394,397,399,400,212,402,404],{},[196,390,391],{},"Status filters",[286,393,300],{},", ",[286,396,288],{},[286,398,306],{}," (by default ",[286,401,300],{},[286,403,288],{}," are selected)",[203,406,407,382,410],{},[196,408,409],{},"Zones filter",[286,411,412],{},"Filter by zones",[203,414,415,382,418],{},[196,416,417],{},"Roles filter",[286,419,420],{},"Filter by roles",[203,422,423,426],{},[196,424,425],{},"Clear filters",": button to reset filters to their defaults (visible only when filters have been changed)",[203,428,429,432,433,436],{},[196,430,431],{},"Results summary",": shows the number of displayed users out of the total and the active filters (e.g. ",[286,434,435],{},"Showing 5 of 12 users • Filtered By: Active, Blocked",")",[203,438,439,442,443,212,446,449],{},[196,440,441],{},"Sorting",": button to toggle between ",[286,444,445],{},"Status order",[286,447,448],{},"Alphabetical order",". Status order follows severity: Blocked → Disabled → Active (within each group, users are sorted alphabetically by username)",[230,451,452,453,455],{},"If you cannot find a user, check whether filters are excluding them. By default, ",[286,454,306],{}," users are not shown.",[192,457,458,459],{},"If the list stays empty, the message tells you whether nothing exists yet or your filters are excluding everything. ",[460,461,463],"a",{"href":462},"\u002Fen\u002Fcomponents\u002Fempty-states","Read more: Empty states",[241,465],{},[244,467,469],{"id":468},"create-a-new-user","Create a new user",[192,471,472,473,320],{},"User creation is a guided process in ",[196,474,475],{},"3 steps",[477,478,480],"h3",{"id":479},"step-1-of-3-user-information","Step 1 of 3 — User Information",[192,482,483],{},"Enter the basic data:",[200,485,486,491,496,501,506,510],{},[203,487,488,490],{},[196,489,263],{}," (required)",[203,492,493],{},[196,494,495],{},"First name",[203,497,498],{},[196,499,500],{},"Last name",[203,502,503],{},[196,504,505],{},"Phone",[203,507,508],{},[196,509,339],{},[203,511,512,515,516,519],{},[196,513,514],{},"Account expiration"," (optional): set an expiration date. By default it is set to ",[286,517,518],{},"Never"," (no expiration).",[192,521,522,523,526],{},"Click ",[196,524,525],{},"Next"," to continue.",[477,528,530],{"id":529},"step-2-of-3-profile","Step 2 of 3 — Profile",[192,532,533],{},"Configure permissions and access scope:",[200,535,536,540],{},[203,537,538,490],{},[196,539,328],{},[203,541,542,490],{},[196,543,334],{},[230,545,546],{},"Roles and zones define what the user can see and which plants or areas they can manage.",[192,548,522,549,526],{},[196,550,525],{},[477,552,554],{"id":553},"step-3-of-3-credentials","Step 3 of 3 — Credentials",[192,556,557],{},"Configure the login credentials (required):",[200,559,560,569,578],{},[203,561,562,565,566,436],{},[196,563,564],{},"Name Credentials"," (e.g. ",[286,567,568],{},"Default",[203,570,571,574,575,436],{},[196,572,573],{},"Name Provider"," (Identity Provider, e.g. ",[286,576,577],{},"VireoXcube",[203,579,580,581],{},"Additional fields depending on the provider, for example for an Internal Identity Provider:\n",[200,582,583,588],{},[203,584,585],{},[196,586,587],{},"Password",[203,589,590],{},[196,591,592],{},"Repeat Password",[230,594,595],{},"For the Internal Identity Provider, the password is validated according to the security policies defined by the system administrator (minimum length, complexity, etc.) on the Identity Provider.",[230,597,598],{},"Nothing is shown for an LDAP Identity Provider, since credential management is handled externally.",[230,600,601],{},"For SSO Identity Providers (Microsoft, Google), credential management is handled by the external provider. No password fields are shown.",[192,603,522,604,607],{},[196,605,606],{},"Add"," to complete the creation.",[241,609],{},[244,611,613],{"id":612},"user-details","User details",[192,615,616],{},"Opening a user shows a set of tabs.",[477,618,620],{"id":619},"tab-profile","Tab: Profile",[186,622],{"alt":623,"dark":624,"light":625},"Profile tab","\u002Fassets\u002Fimg\u002Fdocs\u002FadminTools\u002Fusers\u002FprofileTab-dark.png","\u002Fassets\u002Fimg\u002Fdocs\u002FadminTools\u002Fusers\u002FprofileTab-light.png",[192,627,628,629,632],{},"At the top of the page there is a ",[196,630,631],{},"user summary"," with:",[200,634,635,649,654,666,672,681],{},[203,636,637,639,640,642,643,645,646],{},[196,638,257],{}," with initials, ",[196,641,263],{}," (with ",[266,644,268],{},"), ",[196,647,648],{},"Full name",[203,650,651,653],{},[196,652,272],{}," with copy-to-clipboard support",[203,655,656,659,660,662,663,665],{},[196,657,658],{},"Status tag"," (Active, Disabled, Blocked) — directly editable by users with appropriate write permissions. When changing the status to ",[286,661,288],{},", a modal prompts for a ",[196,664,292],{},". If the user is blocked, the blocked reason is shown inline next to the status tag.",[203,667,668,671],{},[196,669,670],{},"Member Since",": account creation date",[203,673,674,677,678,436],{},[196,675,676],{},"Account Expires",": account expiration date (if configured, otherwise ",[286,679,680],{},"never",[203,682,683,686],{},[196,684,685],{},"Delete",": button to delete the user (visible only for users with appropriate permissions)",[192,688,689],{},"Below the summary are the editable sections:",[200,691,692,698,704],{},[203,693,694,697],{},[196,695,696],{},"Personal information"," (Username read-only, First name, Last name, Phone, Email, Account expiration)",[203,699,700,703],{},[196,701,702],{},"Account profiling"," — for regular users: Role and Zones; for System Operators: Level",[203,705,706,709],{},[196,707,708],{},"Preferences"," (visible only on your own profile): Language, Appearance, Timezone, Date format",[192,711,712,713,716],{},"To save a block of information, use the ",[196,714,715],{},"edit"," icon in that section.",[314,718,719],{},"For security and auditability reasons, some users may not be deletable.\nIf a user has already performed operations in the system (such as commands, alarm acknowledgements, or other actions), the system must keep the related logs.\nIn these cases, instead of being permanently deleted, the user is automatically disabled, preventing access while preserving the activity history.",[241,721],{},[244,723,725],{"id":724},"security-and-credentials","Security and credentials",[477,727,729],{"id":728},"tab-security","Tab: Security",[186,731],{"alt":732,"dark":733,"light":734},"Security tab","\u002Fassets\u002Fimg\u002Fdocs\u002FadminTools\u002Fusers\u002FsecurityTab-dark.png","\u002Fassets\u002Fimg\u002Fdocs\u002FadminTools\u002Fusers\u002FsecurityTab-light.png",[192,736,737],{},"This tab includes:",[200,739,740,745,751],{},[203,741,742,744],{},[196,743,228],{}," status",[203,746,747,748],{},"the list of configured ",[196,749,750],{},"Credentials",[203,752,753],{},"management actions (reset, add, delete)",[755,756,228],"h4",{"id":757},"two-factor-authentication-2fa",[192,759,760,761,320],{},"If a user has multiple credentials, ",[196,762,763],{},"they all share the same 2FA",[192,765,766,767,770],{},"Available actions on your ",[196,768,769],{},"own"," profile:",[200,772,773,779,785],{},[203,774,775,778],{},[196,776,777],{},"Enable 2FA",": enables Two-Factor Authentication (visible only if 2FA is not active)",[203,780,781,784],{},[196,782,783],{},"Disable 2FA",": disables Two-Factor Authentication",[203,786,787,790],{},[196,788,789],{},"Reset 2FA",": resets 2FA",[192,792,793,794,797],{},"Available action on ",[196,795,796],{},"another user's"," profile (for users with appropriate permissions):",[200,799,800],{},[203,801,802,804],{},[196,803,789],{},": resets the user's 2FA",[192,806,807],{},"After a 2FA reset:",[200,809,810,817],{},[203,811,812,813,816],{},"the user must ",[196,814,815],{},"set up 2FA again"," at the next login",[203,818,819,820,823],{},"the ",[196,821,822],{},"QR code"," will be shown again during the setup process",[755,825,827],{"id":826},"credentials-login-methods","Credentials (login methods)",[192,829,830,831,834,835,320],{},"A user can have ",[196,832,833],{},"one or more credentials",". Each credential is linked to an ",[196,836,837],{},"Identity Provider",[192,839,840,841,394,844,847,848,212,851,854],{},"Each credential shows its ",[196,842,843],{},"name",[196,845,846],{},"ID"," (copy-to-clipboard), ",[196,849,850],{},"provider name",[196,852,853],{},"type"," (Internal, LDAP, SSO, etc.).",[192,856,857],{},"Available actions on a credential (for users with appropriate permissions):",[200,859,860,870],{},[203,861,862,865,866,869],{},[196,863,864],{},"Reset Password",": resets the password ",[286,867,868],{},"for that credential"," (only for Internal Identity Providers)",[203,871,872,874],{},[196,873,685],{},": removes the credential",[192,876,877,878,770],{},"Available action on your ",[196,879,769],{},[200,881,882],{},[203,883,884,887],{},[196,885,886],{},"Update Password",": change your own password by entering the current password, the new password and its confirmation (only for Internal Identity Providers)",[314,889,890,891,212,893,895,896,898,899,902],{},"Important: ",[196,892,864],{},[196,894,886],{}," affect the selected credential only.\n",[196,897,789],{}," affects the ",[196,900,901],{},"user",", regardless of which credential is used to log in.",[755,904,906],{"id":905},"credential-priority","Credential priority",[192,908,909,910,913],{},"When a user has multiple credentials, they are ",[196,911,912],{},"ordered by priority",". The credential with the highest priority appears first in the list.",[192,915,916,917,920],{},"To change the order, use the ",[196,918,919],{},"up\u002Fdown arrows"," next to each credential. When you add a new credential, it is automatically assigned the highest priority (making it the first in the list).",[230,922,923],{},"The priority determines the order in which credentials are displayed, but does not affect which credential the user chooses to log in with.",[755,925,927],{"id":926},"add-new-credentials","Add new credentials",[192,929,930,931,933],{},"Use ",[196,932,927],{}," to add another login method for the same user.",[192,935,936],{},"Required fields:",[200,938,939,943,947,951],{},[203,940,941],{},[196,942,564],{},[203,944,945],{},[196,946,573],{},[203,948,949],{},[196,950,587],{},[203,952,953],{},[196,954,592],{},[192,956,957],{},"Use this when:",[200,959,960,963],{},[203,961,962],{},"you want to allow login through a different provider",[203,964,965],{},"you want to add additional credentials for the same user",[241,967],{},[244,969,234],{"id":970},"sessions",[477,972,974],{"id":973},"tab-sessions","Tab: Sessions",[192,976,194,977,979,980,983],{},[196,978,234],{}," tab lists the account's ",[196,981,982],{},"active sessions"," — every device or client currently logged in with valid credentials.",[192,985,986],{},"Each session is shown as a card with:",[200,988,989,996,1005,1014,1020,1026],{},[203,990,991,992,995],{},"a ",[196,993,994],{},"device icon"," (desktop or mobile, detected from the browser user agent)",[203,997,819,998,1001,1002,436],{},[196,999,1000],{},"device label"," — browser and operating system (e.g. ",[286,1003,1004],{},"Chrome · Windows",[203,1006,819,1007,1010,1011],{},[196,1008,1009],{},"IP address"," and, when available, the ",[196,1012,1013],{},"location",[203,1015,1016,1019],{},[196,1017,1018],{},"Last active"," — how long ago the session was last used",[203,1021,1022,1025],{},[196,1023,1024],{},"Signed in"," — when the session started",[203,1027,991,1028,1031],{},[196,1029,1030],{},"Current Session"," badge on the session you are using right now",[477,1033,1035],{"id":1034},"ending-sessions","Ending sessions",[192,1037,1038],{},"Administrators with write permission can end another user's sessions; on your own profile you can always manage your own sessions.",[200,1040,1041,1047],{},[203,1042,1043,1046],{},[196,1044,1045],{},"End Session",": ends a single session (available on every session except the current one). The affected device is signed out and must log in again.",[203,1048,1049,1052,1053,1056,1057,1060],{},[196,1050,1051],{},"Invalidate All Sessions",": the button in the tab header ends the account's sessions in one action. It appears only when there is at least one session that can be ended. When you run it on ",[196,1054,1055],{},"another user",", all of that account's active sessions are signed out; on ",[196,1058,1059],{},"your own"," profile, all your other devices are signed out while the current session stays active.",[192,1062,1063],{},"Both actions ask for confirmation before proceeding.",[314,1065,194,1066,1069],{},[196,1067,1068],{},"current session"," cannot be ended from this tab — you stay logged in on the device you are using.",[241,1071],{},[244,1073,514],{"id":1074},"account-expiration",[192,1076,1077,1078,1080],{},"Users can have an optional ",[196,1079,345],{}," set on their account. When an account expires:",[200,1082,1083,1086],{},[203,1084,1085],{},"The user can no longer log in to the system",[203,1087,1088],{},"The account is automatically treated as disabled",[192,1090,1091],{},"To set an expiration date:",[1093,1094,1095,1098],"ol",{},[203,1096,1097],{},"Open the user's profile",[203,1099,1100,1101,1103],{},"Set the ",[196,1102,349],{}," date",[230,1105,1106],{},"Account expiration is useful for temporary access, such as contractors or consultants who need access for a limited period.",[241,1108],{},[244,1110,1112],{"id":1111},"user-status","User status",[192,1114,1115],{},"Users can have one of the following statuses:",[1117,1118,1119,1131],"table",{},[1120,1121,1122],"thead",{},[1123,1124,1125,1128],"tr",{},[1126,1127,283],"th",{},[1126,1129,1130],{},"Description",[1132,1133,1134,1144,1153],"tbody",{},[1123,1135,1136,1141],{},[1137,1138,1139],"td",{},[196,1140,300],{},[1137,1142,1143],{},"User is enabled and can log in",[1123,1145,1146,1150],{},[1137,1147,1148],{},[196,1149,306],{},[1137,1151,1152],{},"User is disabled and cannot log in",[1123,1154,1155,1159],{},[1137,1156,1157],{},[196,1158,288],{},[1137,1160,1161],{},"User is blocked for security reasons or by administrator decision",[314,1163,194,1164,1166],{},[196,1165,288],{}," status is currently applied only through administrative actions. Automatic blocking mechanisms (e.g., after too many failed login attempts) are not implemented yet.",[241,1168],{},[244,1170,1172],{"id":1171},"frequently-asked-questions","Frequently asked questions",[477,1174,1176],{"id":1175},"can-a-user-have-multiple-credentials","Can a user have multiple credentials?",[192,1178,1179,1180,1183],{},"Yes. A single user can have multiple credentials, each linked to a different Identity Provider. This is useful, for example, as a ",[196,1181,1182],{},"fallback"," strategy: if the LDAP or SSO server is unavailable, the user can still log in using a second credential configured on the internal Identity Provider, preventing downtime and avoiding operational disruptions. Similarly, a user can have both SSO (Microsoft or Google) and internal credentials.",[477,1185,1187],{"id":1186},"does-2fa-apply-to-all-credentials","Does 2FA apply to all credentials?",[192,1189,1190,1191,320],{},"Yes. 2FA is ",[196,1192,1193],{},"shared across all of the user's credentials",{"title":1195,"searchDepth":1196,"depth":1197,"links":1198},"",2,3,[1199,1200,1201,1206,1209,1218,1222,1223,1224],{"id":246,"depth":1196,"text":247},{"id":370,"depth":1196,"text":371},{"id":468,"depth":1196,"text":469,"children":1202},[1203,1204,1205],{"id":479,"depth":1197,"text":480},{"id":529,"depth":1197,"text":530},{"id":553,"depth":1197,"text":554},{"id":612,"depth":1196,"text":613,"children":1207},[1208],{"id":619,"depth":1197,"text":620},{"id":724,"depth":1196,"text":725,"children":1210},[1211],{"id":728,"depth":1197,"text":729,"children":1212},[1213,1215,1216,1217],{"id":757,"depth":1214,"text":228},4,{"id":826,"depth":1214,"text":827},{"id":905,"depth":1214,"text":906},{"id":926,"depth":1214,"text":927},{"id":970,"depth":1196,"text":234,"children":1219},[1220,1221],{"id":973,"depth":1197,"text":974},{"id":1034,"depth":1197,"text":1035},{"id":1074,"depth":1196,"text":514},{"id":1111,"depth":1196,"text":1112},{"id":1171,"depth":1196,"text":1172,"children":1225},[1226,1227],{"id":1175,"depth":1197,"text":1176},{"id":1186,"depth":1197,"text":1187},"Create and manage users, roles, access zones and authentication credentials","md",null,{},{"icon":116},{"title":113,"description":1228},"X_gaVpSGSPq8WVu8tqDrXUzxs3GzSlSx946cnAyzDlI",[1236,1238],{"title":108,"path":109,"stem":110,"description":1237,"icon":111,"children":-1},"Define what a user can do and which plants they can operate on",{"title":118,"path":119,"stem":120,"description":1239,"icon":121,"children":-1},"Viewing and analyzing system activity logs",1790665981933]