The "Authentication" section is now divided into three sections:
Authentication Configuration
The "System Authentication Method" can be selected from the drop-down menu.
Microsoft (OpenId Connect) Authentication Configuration
The Microsoft login can be configured.
(This was the content of the old page)
Synchronize users
Synchronization between Microsoft and c-entron users can be updated and monitored here
Authentication Configuration
In this section, the administrator can (new) Select system authentication method.
This is the authentication method used by default. There are currently 3 options (a 4th, namely Microsoft, is on the way):
None
In this case, there is no standard method, and any method (Basic, ActiveDirectory, Microsoft) can be used for logging in.
Basic
This setting requires users to log in with their c-entron username and password
Active Directory
With this setting, the user's username and password are first checked by the Active Directory server configured in the web service
If the Active Directory login fails, a fallback attempt is made to log the user in using the Log in with standard authentication
IMPORTANT NOTES: If either Basic or ActiveDirectory is selected, users can log in do not register with Microsoft.
When Active Directory is selected, users cannot log in with Basic or Microsoft credentials either.
There is an option in the user settings to enable a fallback method for individual users. If this option is enabled for a specific user, Active Directory authentication is attempted first (as a mandatory setting). If the Active Directory login fails, a fallback attempt is made to log in the user with basic authentication, using the login credentials originally provided. The fallback can be configured on the employee page in c-entron ERP. Selecting the login type drop-down menu on c-entron login activates the fallback. All other options disable the fallback and have no further effect (they will be removed in a future update).
After selecting the desired authentication method, the administrator can click Save:
When you click the Save button, the administrator will be prompted to, log in again using the selected authentication method to authenticate:
This re-authentication is necessary to prevent users from being locked out of the system. After you enter the username and password and click Save, the system authentication method will be updated.
Microsoft (OpenId Connect) Authentication Configuration
This is very similar to the old setting for Microsoft authentication. The changes are as follows:
The checkbox for Activate has been removed.
The Microsoft login is considered activeif a client URL and client ID are configured.
A new one was created "Deactivate" button added to disable Microsoft login
NOTE: This will also delete the configuration values
About the button Save the configuration values are now also tested.
After clicking on Save and test:
The new settings are saved first
The administrator will then be redirected to their organization's Microsoft sign-in page, where they can test the sign-in method.
If the registration is successful, you will be redirected back to the settings page
If the configuration is incorrect, an error will be triggered during redirection, and the administrator will need to return to the settings page of the site.
Synchronize users
In this section, the administrator can monitor the synchronization status between Entra ID and c-entron users and update synchronization for many users in bulk. Synchronization is required for users to log in with Microsoft.
The section consists of five subsections, each containing a table listing the users relevant to a specific section:
Ready to synchronize
This table displays the list of users who are ready for synchronization
The administrator can select the users they want to connect to Microsoft using the checkboxes (or select all users at the top)
Then click on the Synchronize button and the selected users will be connected
Incorrectly configured
This table lists users who have been configured incorrectly. This means that the email address they use in c-entron differs from the email address associated with the Microsoft account they are connected to. Ideally, these users should not be connected. Their login does not work. The connection between these users should be terminated.
The administrator can select the users he wants to disconnect.
Then click on the Remove Synchronize buttonto remove the connection.
Successfully synchronized
This table lists all users who have been successfully synchronized. It is for informational purposes only.
Email not found in C-entron
This table lists all users whose email address is in C-entron not foundit is for informational purposes only.
These users cannot be synchronized. Before synchronization, a corresponding c-entron user with the same email address must be created.
As soon as a corresponding account exists in c-entron, the user is added to Ready to synchronize displayed.
Email not found in Entra ID
Similar to the previous table, this table lists all users whose C-entron email address in Entra was not foundit is for informational purposes only.
These users cannot be synchronized. Before synchronization, a corresponding Entra user with the same email address must be created.
As soon as a corresponding account exists in Entra, the user will be Ready to synchronize displayed.
JavaScript errors detected
Please note, these errors can depend on your browser setup.
If this problem persists, please contact our support.