-
The user quits the organization
-
The user account shall not be used anymore for technical reasons
This article describes how an operator locks a user in Smart ID Identity Manager. Read more here: Smart ID Workforce use cases.
The user state and the related credentials are set to locked. All roles will be withdrawn.
Prerequisites
-
Add reasons for locking the user, read more here: Create reason
Step-by-step instruction for the operator
Log in to Identity Manager Operator
-
Log in to Identity Manager Operator with your user account.
Lock user
-
In the Quick search drop-down list, select User. Search for the user that shall be locked. User data is shown in read-only mode.
To cancel the process, see "Cancel the process" below.
-
Click Lock user.
-
In the Reason drop-down list, select the reason for locking.
The user's active and inactive related credentials gets locked and the certificates that are valid or on hold gets revoked. See "Use case details" below.
-
Click Next to lock the user. The user will not be notified by email after being locked.
Depending on the configuration, there can be options added to the use case, see "Options" below.
Cancel the process
To cancel the process:
-
Click Cancel to close the process.
-
Click Next to proceed with the process.
Use case details
Overview and technical details
|
Use case description |
As an operator I want to lock a user in Identity Manager |
||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
Outcome |
|
||||||||||||||||||
|
Symbolic name |
UsersProcLock |
||||||||||||||||||
|
Process name |
Lock user |
||||||||||||||||||
|
Component |
Identity Manager Operator |
||||||||||||||||||
|
Process start |
On the user profile>Lock user |
Options
About the options
The options are configured by the administrator via a script in Identity Manager Admin and can be used by the operator and self-service user.
The script already exists with default values, so you only need to change the values as needed, not create the script.
Add an approval step
Option: Add an approval step
-
Default = false
-
To manage the option, see here: Users - Manage option to have an approval step
-
Read more here: Users - Approval handling
-
The user is informed about this step in an additional form that is shown in Identity Manager Operator
Additional information