Contents

OneAdvanced Identity FAQs

Alpa Jagpal Updated by Alpa Jagpal

T&A Windows applications

Does OneAdvanced Identity affect logging into the Windows applications?

No, OneAdvanced Identity authentication is only enabled on T&A web and mobile application, there is no change to the way you access your windows applications.

How does a User login to the Windows applications once OneAdvanced Identity has been enabled?

The User can use an T&A existing password set on their User record or set a new password. Identity email/password cannot be used on windows apps.

Identity onboarding

Why is the Identity onboarding tab not available in MODUSRP?

If the OneAdvanced Identity tab is not available in the MODUSRP utility, then the feature will need to be switched on. This can be done through INIEDIT, by navigating to ADVSSO>ENABLEIDENTITY and setting the preference to true.

When I upgrade how do existing employee/users login to T&A web once Identity is enabled?

This is managed as part of the Identity Onboarding function in Wintms.exe -> System -> Maintain Users -> Login Options. There are some helpful Email stats to inform you on whether your data meets the Identity pre-requisite of employees and users having a unique email address, which gives you the opportunity to remedy data before enabling Identity.

Then as part of onboarding a background synchronisation process will be kicked off, this process will pick up all your existing employees/users that have an email address populated and attempt to sync them with an Identity SSO account.

All employees/users successfully synced will be able to login to the T&A web app using Identity.

You can find more details in the Identity Onboarding in T&A section of this article.

Master account access

Can I use the Master user on windows apps?

Yes, as windows apps do not use Identity there is no change to how you use the Master user.

Can I use the Master user on the web app? How?

Yes, you can use Master on the web app but once Identity is enabled the Master user can only be used by one SSO email account on the T&A web app. This is inline with your choice to enable Identity so that you have more secure access to your data via the web and better auditing, as multiple people can not use one account to make changes.

Should you need to use the Master user in the web app, follow the below steps

  • In the Win TMS app, Go to System -> Maintain Users -> Users
  • Select Master User and click modify
  • Update the Email for SSO field with a valid email address, once the record is synced to Identity you will be able to login.
User Management

How do I ensure an employee/user can login to the T&A web app when Identity is enabled?

You must ensure that the employee has a valid email set in their employee record. For users, the Email for SSO field must be populated with a valid email.

How do I know if an employee/user is able to login to the web app using Identity?

In the web app, you will find a new flag called SSO Account Status on the employee and user screen, which indicates if the employee/user has successfully synced or not. This is explained in more detail here.

Can we still switch between employee and user?

Yes, switching between an employee and linked supervisor user will be much quicker and easier with Identity enabled, as you will be taken directly to the dashboard view, and will no longer be required to login again.

Can I link an employee with multiple users?

No, once Identity is enabled an employee and user can only be linked once, as they must share the same email address.

Can I remove the linked employee?

It is not possible to unlink employee from the web app but it is possible viw the windows app. Once the employee link is removed, the Email For SSO field will be enabled again and the Supervisor User can then populate a valid email address or link another employee.

Can I change the Session timeout period?

Yes, the Identity Session Timeout setting can be found in Wintms.exe -> System -> Maintain Users -> Login Options ->OneAdvanced Identity screen. The default session timeout is 30 minutes but the can be set within a range of 20 to 90 minutes.

Was this article useful?

User management with Identity

Contact