Agent Guidance Core User Guide

Please email support@creovai.com for omissions or errors.
×
Menu

Security Settings

 
The Security Settings provide features relating to User authentication, application access, and Single Sign On. Options configured here will affect the entire Agent Guidance System.
 
Security Settings
 
 
1

Enforce Password Policy

1. Enforce Password Policy
 
If enabled, a variety of further password-related items are made available for configuration, and password expiry and length limits are enforced.
 
2

Require Uppercase Characters

2. Require Uppercase Characters
 
If enabled, Users must include a upper-case character when changing their password.
 
This option is only available if Enforce Password Policy is enabled.
 
3

Require Lowercase Characters

3. Require Lowercase Characters
 
If enabled, Users must include a lower-case character when changing their password.
 
This option is only available if Enforce Password Policy is enabled.
 
4

Require Number Characters

4. Require Number Characters
 
If enabled, Users must include a numeric character when changing their password.
 
This option is only available if Enforce Password Policy is enabled.
 
5

Require Symbol Characters

5. Require Symbol Characters
 
If enabled, Users must include a symbol-type character when changing their password.
 
This option is only available if Enforce Password Policy is enabled.
 
6

Password Expiration

6. Password Expiration
 
The number of days a password is valid for before it needs to be changed by the User on next login.
 
This option is only available if Enforce Password Policy is enabled.
 
7

Minimum Password Length

7. Minimum Password Length
 
The minimum length of a password that can be set for Users.
 
This option is only available if Enforce Password Policy is enabled.
 
8

Prevent Using Previous Passwords

8. Prevent Using Previous Passwords
 
If enabled, Users cannot reuse a recent password when changing their password.
 
This option is only available if Enforce Password Policy is enabled.
 
9

Maximum Login Attempt Failures

9. Maximum Login Attempt Failures
 
How many consecutive failed login attempts a User can make before they are automatically temporarily locked out. It can range between 1 and 100 attempts.
 
10

Login Failure Lockout Duration

10. Login Failure Lockout Duration
 
How long (in minutes) a User will be locked out if they trigger the automated lock for failed login attempts. It can range between 1 and 60 minutes.
 
11

Allow User Managers to Add Users

11. Allow User Managers to Add Users
 
If enabled, then Users who have been assigned the User Manager licence part will be allowed to create and import new Users.
 
12

Allow User Managers to Add Groups

12. Allow User Managers to Add Groups
 
If enabled, then Users who have been assigned the User Manager licence part will be allowed to create and import new Groups.
 
13

Allow User Managers to Assign and Unassign Licences

13. Allow User Managers to Assign and Unassign Licences
 
If enabled, then Users who have been assigned the User Manager licence part will be allowed to manage licence part assignment for Users. The usual restrictions remain around not being able to modify any Users with the System Manager licence part, or anyone who isn't a member of a shared Group.
 
14

Accepted Origins

14. Accepted Origins
 
Agent Guidance will accept external connections from any hostnames specified in this list. If no options are configured or it has a value of *, then all originating hostnames are permitted (global whitelist).
 
Note: If using an SSO authentication scheme, then this option must either be a globally whitelisted or include the SSO's origin. Failure to do so will cause login attempts to be rejected as from an untrusted origin.
 
15

Anti-Forgery Check

15. Anti-Forgery Check
 
If enabled, an additional security measure will be enabled to prevent Cross-Site Request Forgery attacks. This should have no impact on legitimate usage of the application, but will prevent targeted attacks against privileged Users to affect the Agent Guidance System.
 
16

Enable Password Reset Request

16. Enable Password Reset Request
 
If enabled, then the login screen will offer the ability to request a password reset. This requires that the User has a configured email address, that the default email Connector is configured, accurate, and active, and that the Message Processing Service is active.
 
For security reasons, the User will be given no indication if they enter a non-existent username into the request. They will also see a notification that an email has been sent, even if it is waiting in the queue with non-functional mail credentials or a disabled Message Processing Service.
 
17

Remember Me

17. Remember Me
 
If enabled, login details will be remembered following the next successful login.
 
18

Run Agent Guidance Within Another Web Application

18. Run Agent Guidance Within Another Web Application
 
If operating Agent Guidance within another web application such as Genesys Cloud as an embedded or iframed window, then this setting must be enabled as part of the directions provided in the Operating Agent Guidance within an Iframe article.
 
19

Single Sign On Only

19. Single Sign On Only
 
If enabled, then login will only be allowed via Single Sign On. This option is only enforced if there is at least one Single Sign On Connector that is currently active.