2.3.4  

Security (User administration) 
 

User administration  
The access parameters between the program and the communication system are defined via the user administration (File/Transfer/Communication/Security/User administration). Up to 16 users (= administrators) can be entered. A user is identified by his or her name. The establishment of a user group defines the usage rights of the respective user. Authentication is carried out by means of a password.
Two user names and the user groups linked to them, which are relevant for the administration, are preset in the default setting of the user administration:
   -   User name "31994" with the user group "Service"
As long as no other user groups are set up, this user group has the access rights to all administrable system data and the execute rights for all actions available in the system. Excluded from this are access rights that are reserved for the development (see user group "Development").
   -   User name "633423" or "office" with the user group "Customer"
The user group `Customer' has access to all data that is intended for administration by the customer (see also further below).
   -   User name "*95" with the user group "none"
As long as no other user groups other than the one described above are set up, it is possible to administer customer-relevant data using the telephone with this user group (due to compatibility reasons with Hicom 150 E Office Rel. 1.0). This entry has no meaning for the communication system administration with HiPath 3000 Manager.
User access rights can be determined by specifying one of the 6 user groups available.
   -   User group <none>
This user group has no meaning when using the program for administration.
   -   The user group User admin
This user group has the access rights to the User administration dialog, where the user and the linked user groups are set up.
   -   The user group Revision
This user group has the access rights to the Security protocol dialog.
   -   User group Service
By default, only the user "31994" exists (see further below).
   -   The user group Administration (Customer)
By default, only the user "633423" exists (see further above).
This user group can access data that is intended for administration by the customer. This customer data can, however, also be additionally set up by the service. An exception is the confidential customer data, which may be handled only by the customer:
     -   PIN code (only relevant for administration on the system telephone)
     -   Individual speed dialing facility (only relevant for administration on the system telephone)
     -   Contents of the name keys of system telephones
     -   Central speed dial destinations
     -   Call charge data per station and per line
   -   The user group Call charges
has the access rights to the data from call detail recording, call charge data records and the call detail counter. If this user group is not set up, the rights belong to the customer user group. If the customer is not set up either, they belong to the service user group.
   -   User group Development
In addition to the access rights of the service user group, the Development user group has the possibility of administering additional data in the communication system.

Security protocol (log)  
A distinction is made in the security protocol (log) between:
   -   Offline mode
   -   Online mode, Active logging
   -   Online mode, Logging not active
The protocol mode is selected via a dialog.

Offline mode  
In offline mode, only the existing archive file can be opened, viewed and printed. The archive files cannot be modified. There is no connection with a communication system, so the archive information from the communication system cannot be displayed.

Online mode, Active logging  
A connection to the communication system is set up for online mode. In order to use this mode with active logging, the logging facility in the communication system must actually be active (determined by the hardware configuration).
If logging has already been executed, the archive information from the communication system is also displayed. The archive file name is taken from the communication system and an attempt is made to open this file and to display the archive information it contains. The archive information from the communication system and from the archive file are normally identical.

Online mode, Logging not active  
In order to use this mode with inactive logging, the logging facility in the communication system must not be active (determined by the hardware configuration).

See also:  
   -   Section 9.19 "Transfer"
   -   Section 9.19.1 "Transfer | Communication"
   -   Section 9.19.36 "Security | User administration"
   -   Section 9.19.37 "Security | Protocol"