Changes for page Benutzerverwaltung

Last modified by Sabrina V. on 2026/08/10 08:17

From version 1.2
edited by Sabrina V.
on 2026/07/23 08:35
Change comment: There is no comment for this version
To version 3.1
edited by Sabrina V.
on 2026/07/23 08:48
Change comment: There is no comment for this version

Summary

Details

Page properties
Content
... ... @@ -9,9 +9,9 @@
9 9  
10 10  |=(% style="width: 437px;" %)Components of Rights Management|=(% style="width: 1035px;" %)Description
11 11  |(% style="width:437px" %)Fundamental Rights|(% style="width:1035px" %)(((
12 -Basic rights refer to the rights that are assigned to users and groups directly during creation or in user management and that apply across the entire ACMP Console. Using these rights, you can, for example, specify which ACMP Solutions a user is allowed to view and which actions they are permitted to perform within a solution. For more info, you can jump to the section on [[Rights of User>>doc:||anchor="HRechtedesBenutzersfestlegen"]].
12 +Basic rights refer to the rights that are assigned to users and groups directly during creation or in user management and that apply across the entire ACMP Console. Using these rights, you can, for example, specify which ACMP Solutions a user is allowed to view and which actions they are permitted to perform within a solution. For more info, you can jump to the section on [[Rights of User>>doc:||anchor="HManagingUsersandGroupsinACMP"]].
13 13  )))
14 -|(% style="width:437px" %)Component-Specific Permissions|(% style="width:1035px" %)Component-specific permissions allow you to specify, for individual system components and elementssuch as reports, Client Commands, or folderswhich users are allowed to view and, if applicable, edit each component. These permissions are managed through individual access lists for each component. For more information on permissions, see the “Access Lists” section.
14 +|(% style="width:437px" %)Component-Specific Permissions|(% style="width:1035px" %)Component-specific permissions allow you to specify, for individual system components and elementssuch as reports, Client Commands, or folderswhich users are allowed to view and, if applicable, edit each component. These permissions are managed through individual access lists for each component. For more information on permissions, see the “Access Lists” section.
15 15  
16 16  == Default Users and Groups ==
17 17  
... ... @@ -23,7 +23,7 @@
23 23  
24 24  [[User Management>>image:68_System_Benutzerverwaltung Übersicht_1821.png||alt="63_System_Benutzerverwaltung_1696.png" data-xwiki-image-style-alignment="center"]]
25 25  
26 -Depending on which option you selected ([[Users>>doc:||anchor="HBenutzerverwalten"]] or [[Groups>>doc:||anchor="HGruppenverwalten"]]), the commands in the ribbon bar will change. However, you can [[import AD users>>doc:||anchor="HActiveDirectory-Benutzerimportieren"]] from either tab at any time. In the left pane, you’ll see a list of all created users, from which you can, for example, see at a glance what roles they have been assigned and whether multi-factor authentification (MFA) is activated. On the right side is the detail view for the currently selected user.
26 +Depending on which option you selected ([[Users>>doc:||anchor="HManageUsers"]] or [[Groups>>doc:||anchor="HManageGroups"]]), the commands in the ribbon bar will change. However, you can [[import AD users>>doc:||anchor="HImportActiveDirectoryUsers"]] from either tab at any time. In the left pane, you’ll see a list of all created users, from which you can, for example, see at a glance what roles they have been assigned and whether multi-factor authentification (MFA) is activated. On the right side is the detail view for the currently selected user.
27 27  
28 28  Legend
29 29  
... ... @@ -90,7 +90,7 @@
90 90  
91 91  **Assign Groups**
92 92  
93 -In the second step, specify the group membership. In most cases, [[groups>>doc:||anchor="#Gruppen"]] have different rights. A user can be assigned to multiple groups. There is no requirement to assign a user to a group. Some groups are already provided when you install ACMP (including //AD Login//, //Full access//, and //Secured by MFA//).
93 +In the second step, specify the group membership. In most cases, [[groups>>doc:||anchor="#Groups"]] have different rights. A user can be assigned to multiple groups. There is no requirement to assign a user to a group. Some groups are already provided when you install ACMP (including //AD Login//, //Full access//, and //Secured by MFA//).
94 94  
95 95  {{aagon.warnungsbox}}
96 96  For security reasons, it is not recommended to assign a user to multiple groups. Instead, you can, for example, create a separate group for the user.
... ... @@ -111,154 +111,160 @@
111 111  
112 112  **Select Roles and Tenants**
113 113  
114 -Now define roles and tenants for the user. You can specify whether the user should be assigned a Helpdesk role, which would allow them to become a ticket editor. You can also specify whether the user can view and manage all tenants, only selected tenants, or none at all. If you want to use [[multi tenancy>>doc:ACMP.610.ACMP-Solutions.System.Einstellungen.ACMP Server.WebHome||anchor="HMandantenfE4higkeit"]] in ACMP verwenden wollen, müssen Sie dem Benutzer zwingend alle oder zumindest ausgewählte Mandanten freigeben.
114 +Now define roles and tenants for the user. You can specify whether the user should be assigned a Helpdesk role, which would allow them to become a ticket editor. You can also specify whether the user can view and manage all tenants, only selected tenants, or none at all. If you want to use [[multi tenancy>>doc:ACMP.610.Mandantenfähigkeit in ACMP.WebHome]] in ACMP, you must grant the user access to all tenants or at least selected tenants.
115 115  
116 116  (% class="box warningmessage" %)
117 117  (((
118 118  [[image:https://doc.aagon.com/bin/download/XWiki/Aagon%20Warnungsbox/WebHome/Warning.svg||alt="Warning" height="32" width="32"]] **Achtung: **
119 119  
120 -Wenn Sie keinen Mandanten auswählen, kann sich der neue Benutzer später nicht an der ACMP Console anmelden.
120 +If you do not select a tenant, the new user will not be able to log in to the ACMP Console later.
121 121  )))
122 122  
123 -[[Rollen und Mandanten festlegen>>image:Benutzerverwaltung_Rollen und Mandanten.png]]
123 +[[Define Roles and Tenants>>image:Benutzerverwaltung_Rollen und Mandanten.png]]
124 124  
125 -(% class="wikigeneratedid" id="HACMPKontaktfestlegen" %)
126 -**ACMP Kontakt festlegen**
127 127  
128 -Im letzten Schritt können Sie dem Benutzer einen bestehenden Kontakt aus dem Helpdesk zuordnen oder einen neuen Kontakt für den Benutzer erstellen
126 +**Set ACMP Contact**
129 129  
128 +In the final step, you can assign an existing contact from the Helpdesk to the user or create a new contact for the user
129 +
130 130  {{aagon.infobox}}
131 -Dieser Schritt ist nur möglich, wenn der Helpdesk als Solution installiert ist.
131 +This step is only possible if the Helpdesk is installed as a solution.
132 132  {{/aagon.infobox}}
133 133  
134 -Klicken Sie zum Schluss auf //Fertig//, um die Zuordnung zu bestätigen bzw. den neuen Kontakt anzulegen und die Erstellung des Benutzers abzuschließen.
134 +Finally, click //Done// to confirm the mapping or create the new contact and complete the user creation process.
135 135  
136 -=== **Benutzer editieren** ===
136 +=== **Edit User** ===
137 137  
138 -Markieren Sie einen Benutzer und klicken Sie in der Ribbonleiste auf den Button //Bearbeiten//. Es öffnet sich der gleiche Dialog wie zum Anlegen eines Benutzers. Alle Eigenschaften sind bereits eingetragen und nnen beliebig geändert werden.
138 +Select a user and click the //Edit// button on the ribbon bar. The same dialog box that appears when creating a user will open. All properties are already filled in and can be changed as needed.
139 139  
140 -Falls Sie einen Benutzer nur umbenennen chten, so können Sie dies auch mit einem Rechtsklick über das Schnellwahlmenü.
140 +If you only want to rename a user, you can also do so by right-clicking to access the context menu.
141 141  
142 -=== **Benutzer schen** ===
142 +=== **Delete a User** ===
143 143  
144 -Markieren Sie einen Benutzer und klicken Sie das Icon Benutzer schen in der Schnellwahlleiste an. Beantworten Sie die Sicherheitsabfrage mit Ja um den Benutzer zu schen.
144 +Select a user and click the Delete User icon in the context menu. Respond to the confirmation prompt with Yes to delete the user.
145 145  
146 -=== **Passwort ändern** ===
146 +=== **Change Password** ===
147 147  
148 -Um das Passwort eines Benutzers zu ändern markieren Sie diesen und klicken auf das Icon Passwort ändern. Geben Sie das neue Passwort ein und bestätigen Sie es.
148 +To change a user’s password, select the user and click the Change Password icon. Enter the new password and confirm it.
149 149  
150 -== Gruppen verwalten ==
150 +== Manage Groups ==
151 151  
152 -Im Tab //Gruppen //haben Sie die Möglichkeit, neue Gruppen hinzuzufügen und bestehende Gruppen zu bearbeiten, zu löschen oder zu duplizieren.
152 +In the //Groups// tab, you can add new groups and edit, delete, or duplicate existing groups.
153 153  
154 -[[Gruppenübersicht in der Benutzerverwaltung>>image:68_Benutzerverwaltung_Gruppen Übersicht_1660.png||alt="67_Benutzerverwaltung_Gruppen Übersicht_1660.png"]]
154 +[[Group Overview in User Management>>image:68_Benutzerverwaltung_Gruppen Übersicht_1660.png||alt="67_Benutzerverwaltung_Gruppen Übersicht_1660.png"]]
155 155  
156 -=== **Gruppe hinzufügen** ===
156 +=== **Add Group** ===
157 157  
158 -Klicken Sie in der Ribbonleiste auf den Button //Hinzufügen//, um eine neue Gruppe anzulegen. Vergeben Sie im sich öffnenden Wizard nun zuerst den Namen sowie optional eine Beschreibung für die Gruppe.
158 +Click the //Add// button on the ribbon bar to create a new group. In the wizard that opens, first enter a name and, optionally, a description for the group.
159 159  
160 -(% class="wikigeneratedid" id="HGruppemitBenutzernfFCllen" %)
161 -**Gruppe mit Benutzern füllen**
160 +**Add Users to the Group**
162 162  
163 -Im zweiten Schritt können Sie der Gruppe einen oder mehrere Benutzer zuzuordnen oder die Gruppe erst einmal leer lassen. Dazu markieren Sie einfach die entsprechenden Benutzer aus der Liste. Diese Benutzer werden damit zu Mitgliedern der Gruppe.
162 +In the second step, you can assign one or more users to the group or clear the group for now. To do this, simply select the appropriate users from the list. These users will then become members of the group.
164 164  
165 -(% class="wikigeneratedid" id="HRechtederGruppefestlegen" %)
166 -**Rechte der Gruppe festlegen**
164 +**Set rights of group**
167 167  
168 -Anschließend geben Sie im dritten Schritt die Rechte der Gruppe an. Wählen Sie dazu zuerst die Solutions aus, welche für die Gruppe sichtbar sein sollen. Wenn Sie eine der Solutions ausgewählt haben, können Sie im rechten Feld angeben, welche Rechte die Mitglieder der Gruppe für die Solution besitzen soll.
166 +Next, in the third step, specify the rights of group. To do this, first select the solutions that should have visibility to the group. Once you’ve selected a solution, you can specify in the right-hand field what rights the group members should have for that solution.
169 169  
170 170  [[image:68_System_Benutzerverwaltung Gruppenrechte_965.png||alt="System_Benutzerverwaltung_NeueGruppe1" data-xwiki-image-style-alignment="center"]]
171 171  
172 172  (% style="text-align:center" %)
173 -Sichtbarkeit von Solutions aktivieren und Gruppenrechte vergeben
171 +Enable visibility for solutions and assign group permissions
174 174  
175 175  (% class="wikigeneratedid" id="HRollenundMandantenauswE4hlen" %)
176 -(% id="cke_bm_89369S" style="display:none" %)** **(%%)**Rollen und Mandanten auswählen**
174 +(% id="cke_bm_89369S" style="display:none" %)** **
177 177  
178 -Legen Sie nun Rollen und Mandanten für die Gruppe fest. Sie haben die Möglichkeit festzulegen, ob Mitglieder dieser Gruppe eine Helpdesk-Rolle erhalten sollen, mit der diese dann Bearbeiter von Tickets werden können. Ein Mitglied dieser Gruppe kann somit als Helpdesk-Mitarbeiter Tickets aufnehmen, editieren und bearbeiten. Außerdem können Sie festlegen, ob Mitglieder dieser Gruppe alle, nur ausgewählte oder keine Mandanten sehen und verwalten können. Wenn Sie die [[Mandantenfähigkeit>>doc:ACMP.610.ACMP-Solutions.System.Einstellungen.ACMP Server.WebHome||anchor="HMandantenfE4higkeit"]] in ACMP verwenden wollen, müssen Sie dem Benutzer zwingend alle oder zumindest ausgewählte Mandanten freigeben.
176 +**Select Roles and Tenants**
179 179  
180 -(% class="wikigeneratedid" id="HActiveDirectoryGruppenzuordnung" %)
181 -**Active Directory Gruppenzuordnung**
178 +Now define the roles and tenants for the group. You can specify whether members of this group should be assigned a Helpdesk role, which would allow them to become ticket editors. A member of this group can thus act as a Helpdesk agent to create, edit, and process tickets. You can also specify whether members of this group can view and manage all tenants, only selected tenants, or none at all. If you want to use [[multi tenancy>>doc:ACMP.610.Mandantenfähigkeit in ACMP.WebHome]] in ACMP, you must grant the user access to all tenants or at least selected tenants.
182 182  
183 -Dieser Schritt dient dem Abgleich von Benutzern einer Active Directory-Gruppe mit der ACMP Gruppe, die gerade von Ihnen erstellt wird. Dadurch ist es möglich, dass Benutzer nur noch über das AD verwaltet werden, anstatt alle Benutzer nochmals manuell in der ACMP anzulegen. Damit diese Funktion sinnvoll genutzt werden kann, muss in der Plattform-Konfiguration eine Login-Gruppe angegeben werden, in welcher alle Benutzer eingetragen sind, die auf die ACMP zugreifen dürfen (siehe [[Login>>doc:ACMP.610.ACMP-Solutions.System.Einstellungen.ACMP Server.WebHome||anchor="HActiveDirectoryLogin"]]).
184 184  
181 +**Active Directory Group Mapping**
182 +
183 +This step is used to map users in an Active Directory group to the ACMP group you are currently creating. This allows you to manage users exclusively through AD, rather than having to manually create all users in ACMP again. To use this function effectively, you must specify a login group in the platform configuration that includes all users authorized to access the ACMP (see [[Login>>doc:ACMP.610.ACMP-Solutions.System.Einstellungen.ACMP Server.WebHome||anchor="HActiveDirectoryLogin"]]).
184 +
185 185  {{aagon.infobox}}
186 -Wenn Sie diese Funktion nicht nutzen chten, können Sie diesen Schritt überspringen und die Erstellung der Gruppe abschließen.
186 +If you do not want to use this function, you can skip this step and finish creating the group.
187 187  {{/aagon.infobox}}
188 188  
189 -Konfigurieren Sie die Gruppe nun so, dass eine AD-Gruppe zugeordnet ist. Dadurch wird ein Benutzer der AD-Gruppe bei seinem ersten Login im ACMP automatisch angelegt und dieser Gruppe zugeordnet. Existiert der Benutzer bereits, wird er dieser Gruppe zugeordnet, falls dies nicht schon geschehen ist. Ebensonnen über die Funktion //Importiere alle neuen AD Benutzer aus der AD Zugangsgruppe der Benutzerverwaltung// die Benutzer manuell abgeglichen werden, wodurch ACMP Benutzer auch aus der Gruppe entfernt werden, wenn Sie nicht mehr Teil der zugeordneten AD-Gruppe sind. ACMP Benutzer werden jedoch nicht automatisch gelöscht. Ebenso nnen ACMP Benutzer weiterhin manuell angelegt und der Gruppe zugewiesen werden, wodurch sie bei einem manuellen Abgleich über die bereits erwähnte Funktion nicht in den Abgleich mit einbezogen werden.
189 +Now configure the group so that an AD group is assigned to it. This ensures that a user in the AD group is automatically created in ACMP upon their first login and assigned to this group. If the user already exists, they will be assigned to this group if they have not already been. Similarly, you can manually synchronize users using the //Import all new AD users from the AD access group in user management// function, which will also remove ACMP Users from the group if they are no longer part of the assigned AD group. However, ACMP users are not automatically deleted. ACMP users can also continue to be created manually and assigned to the group; as a result, they will not be included in the synchronization when a manual synchronization is performed using the aforementioned function.
190 190  
191 191  (% style="text-align:center" %)
192 192  [[image:XWiki.Images.WebHome@system_benutzerverwaltung_neuegruppe2.png||alt="System_Benutzerverwaltung_NeueGruppe2" height="401" width="327"]]
193 -Active Directory-Gruppe hinzufügen
193 +Add an Active Directory group
194 194  
195 -Um dieser ACMP Gruppe eine korrespondierende AD-Gruppe zuzuordnen, klicken Sie auf //Hinzufügen //und hlen in dem neuen Fenster die Domäne aus, in welcher sich die zuzuordnende Gruppe befindet. Geben Sie einen Gruppennamen bzw. einen Teil davon ein und klicken Sie auf Name prüfen um sich alle passenden Gruppen anzeigen zu lassen. Wählen Sie die zuzuordnende Gruppe aus. Sie können einer ACMP Gruppe mehrere AD-Gruppen zuordnen.
195 +To assign a corresponding AD group to this ACMP group, click //Add// and, in the new window, select the domain in which the group to be assigned is located. Enter a group name or part of it, and click //Check Name// to display all matching groups. Select the group you want to map. You can map multiple AD groups to a single ACMP group.
196 196  
197 197  {{aagon.infobox}}
198 -Damit über den Dialog Domänen ausgewählt werden können, muss ein Benutzer mit Domänen-Leserechten in den ACMP-Einstellungen (siehe Login) eingetragen sein.
198 +To enable the selection of domains via the dialog box, a user with domain read permissions must be entered in the ACMP settings (see login).
199 199  {{/aagon.infobox}}
200 200  
201 -=== Multifaktor-Authentifizierung ===
202 202  
203 -Im letzten Schritt können Sie für die Benutzer der Gruppe noch die Multifaktor-Authentifizierung konfigurieren.
204 204  
205 -Wenn Sie die Nutzung und die Konfiguration für die Zweifaktor-Authentifizierung beim Login des Benutzers der neu erstellten Gruppe erzwingen wollen, müssen Sie die Checkbox aktivieren („Erzwinge die Konfiguration der Multifaktor-Authentifizierung für Benutzer dieser Gruppe beim Login“).
203 +=== Multi-factor authentification ===
206 206  
207 -Es ist möglich, einen individuellen Text als Hilfenachricht zu erstellen, die dem Benutzer beim Login angezeigt wird und mehr Hilfestellungen geben kann. Dabei stehen Ihnen die gängigen Werkzeuge zum Bearbeiten des Textes (verschiedene Schriftarten und -größen, Absatzvorlagen, Links etc.) zur Verfügung. Der konfigurierte Text lässt sich dabei u.a. in der Login-Maske über den Button „Ich benötige Hilfe“ abrufen.
205 +In the final step, you can configure multi-factor authentification for the users in the group.
208 208  
209 -Beenden Sie Ihre Arbeiten, indem Sie auf //Fertig //klicken und damit eine Gruppe anlegen.
207 +If you want to enforce the use and configuration of multi-factor authentication when users in the newly created group log in, you must enable the checkbox (“Enforce multi-factor authentication configuration for users in this group upon login”).
210 210  
211 -[[Konfigurationsmöglichkeiten für die Multifaktor-Authentifizierung>>image:67_Benutzerverwaltung_Gruppe hinzufügen Multifaktor-Authentifizierung_mit Haken_810.png]]
209 +You can create a custom text message to serve as a help message that is displayed to the user during login and provides additional guidance. You have access to standard text-editing tools (various fonts and font sizes, paragraph styles, links, etc.). The configured text can be accessed, for example, in the login mask via the “I need help” button.
212 212  
211 +Exit your work by clicking //Done// to create a group.
212 +
213 +
214 +[[Configuration Options for Multi-Factor Authentication>>image:67_Benutzerverwaltung_Gruppe hinzufügen Multifaktor-Authentifizierung_mit Haken_810.png]]
215 +
213 213  {{aagon.infobox}}
214 -Lesen Sie im Anwendungsfall „Zwangseinrichtung der Multifaktor-Authentifizierung für einen Benutzernach, wie die Einrichtung für andere Benutzer aussieht.
217 +See the “Enforcing multi-factor authentification for a user” use case to learn how to set this up for other users.
215 215  {{/aagon.infobox}}
216 216  
217 217  {{aagon.infobox}}
218 -Sollten Sie nachträglich den Text zur Multifaktor-Authentifizierung anpassen wollen, Gruppeneigenschaften ändern oder die Benutzer und Rechte der Gruppe konfigurieren wollen, können Sie das über die //Bearbeiten// Funktion innerhalb der Ribbonleiste machen. hlen Sie dafür die gewünschte Gruppe aus und editierten Sie alle Angaben.
221 +If you later want to customize the text for multi-factor authentification, change group properties, or configure the group's users and rights of group, you can do so using the //Edit// function in the ribbon bar. To do this, select the desired group and edit all the details.
219 219  {{/aagon.infobox}}
220 220  
221 221  {{aagon.infobox}}
222 -Für die mitgelieferte „Securd by MFA“-Gruppe ist bereits ein allgemein ltiger Text hinterlegt, der auf die Onlinehilfe verweist. Dieser lässt sich ebenso anpassen.
225 +A general text that links to the online help is already included for the included “Securd by MFA” group. This text can also be customized.
223 223  {{/aagon.infobox}}
224 224  
228 +Click //Finish //to create the group.
225 225  
226 -Klicken Sie auf //Fertig//, um die Gruppe anzulegen.
230 +=== **Edit Group** ===
227 227  
228 -=== **Gruppe bearbeiten** ===
232 +To edit a group, select it from the list and click the //Edit// button (​) on the ribbon bar. A window will open where you can change any of the information you specified when you created the group. The current values are already entered and can be edited as needed. This also allows you to change the group properties later, set a different set of rights for the users or the group itself, or customize the help text for multi-factor authentication. If you simply want to rename the group, you can do so by right-clicking and using the context menu.
229 229  
230 -Bearbeiten Sie eine Gruppe, indem Sie diese aus der Liste auswählen und markieren und in der Ribbonleiste auf den gleichnamigen Button //Bearbeiten //([[image:1730897038165-299.png||height="17" width="18"]]) klicken. Es öffnet sich ein Fenster, wo Sie sämtliche Informationen nachträglich ändern können, die Sie beim neu erstellen der Gruppe festgelegt haben. Die aktuellen Werte sind bereits eingetragen und lassen sich beliebig editieren. Hierdurch ist es also auch möglich, nachträglich die Gruppeneigenschaften zu ändern, eine andere Auswahl an Rechten für die Benutzer oder die Gruppe selbst festzulegen oder den Hilfetext für die Multifaktor-Authentifizierung anzupassen. Sollten Sie lediglich die Gruppe umbenennen wollen, können Sie das auch per Rechtsklick über das Schnellwahlmenü.
234 +=== **Delete Group** ===
231 231  
232 -=== **Gruppe löschen** ===
236 +Select a group and click the Delete Group icon. Confirm the security prompt to delete the group. Users assigned to the group will, of course, remain unaffected.
233 233  
234 -Markieren Sie eine Gruppe und klicken Sie auf das Icon Gruppe löschen. Bestätigen Sie die Sicherheitsabfrage um die Gruppe zu löschen. Der Gruppe zugeordnete Benutzer bleiben selbstverständlich bestehen.
238 +=== **Duplicate Group** ===
235 235  
236 -=== **Gruppe duplizieren** ===
240 +To duplicate an existing group along with all its existing users, select the desired group. Then select Duplicate Group from the ribbon bar.
237 237  
238 -Um eine bereits vorhandene Gruppe mit allen bereits vorhandenen Benutzern zu duplizieren markieren Sie die gewünschte Gruppe. Wählen Sie nun in der Ribbonleiste Gruppe dupliziereaus.
242 +A new window will open displaying the properties of the new group. You can now assign a name to the duplicated group and customize it using the available tabs.
239 239  
240 -In einem neuen Fenster öffnen sich die Eigenschaften der neuen Gruppe. Sie können für die duplizierte Gruppe nun einen Namen vergeben sowie über die verfügbaren Reiter die Gruppe individuell anpassen.
241 -
242 242  {{aagon.infobox}}
243 -Wenn Sie nicht alle Benutzer aus der ursprünglichen Gruppe auch in der neuen haben wollen, können Sie auf dem Reiter Benutzer in Gruppe im Kontextmenü die Auswahl aufheben. Zusätzlich können Sie hier aucAlles auswählen, wodurch Sie auch beim Hinzufügen mehrerer Benutzer zeiteffizienter arbeiten können.
245 +If you don't want to include all users from the original group in the new group, you can deselect all users on the “Users in Group” tab using the context menu. You can also select Select All here, which allows you to work more efficiently when adding multiple users.
244 244  {{/aagon.infobox}}
245 245  
246 -Bestätigen Sie Ihre Angaben mit //Speichern//.
248 +
247 247  
248 -=== MFA für Benutzer zurücksetzen ===
250 +Confirm your entries by clicking //Save//.
249 249  
250 -Um die Multifaktor-Authentifizierung für einen Benutzer zurückzusetzen, können Sie den gleichnamigen Button in der Ribbonleiste nutzen ([[image:1730896831843-996.png]]). Bestätigen Sie die Eingabe und es werden alle Faktoren für die Multifaktor-Authentifizierung des ausgewählten Benutzers gelöscht. Das Passwort des Benutzers bleibt unverändert. Sollte eine Zwangseinrichtung für den Benutzer eingerichtet worden sein, wird die verpflichtende Einrichtung der Authentifizierung automatisch mit dem nächsten Login erfolgen.
252 +=== Reset multi-factor authentification for a User ===
251 251  
252 -= Active Directory-Benutzer importieren =
254 +To reset multi-factor authentification for a user, you can use the button of the same name in the ribbon bar ([[image:1730896831843-996.png]]). Confirm your entry, and all factors for the selected user’s multi-factor authentification will be deleted. The user password remains unchanged. If mandatory authentication has been configured for the user, the user will be required to set up authentication automatically upon their next login.
253 253  
254 -Einer Gruppe lassen sich in ACMP eine oder mehrere AD-Gruppen zuordnen, welche mit „oder“ verknüpft sind. Eine Zuordnung wird über ein entsprechendes Symbol angezeigt. Alle Mitglieder dieser Gruppen können sich an der ACMP Console anmelden und besitzen die entsprechenden Rechte, die ihrer Gruppe zugeordnet sind. Voraussetzung hierfür ist, dass sie auch Mitglied in der jeweiligen Zugangsgruppe sind, die unter [[AD-Anmeldung>>doc:||anchor="HActiveDirectory-Anmeldung"]] angegeben sind. Ein manuelles Hinzufügen von Benutzern entfällt in diesem Fall, ist jedoch auch weiterhin möglich, sodass die Benutzer komplett im Active Directory verwaltet werden können.
255 255  
256 -Meldet sich ein Benutzer auf diese Weise an, so wird er automatisch vom System in die ACMP Datenbank eingetragen. Alternativ können auch alle Benutzer manuell über die Funktion //Importiere alle neuen AD Benutzer aus der AD Zugangsgruppe in die Datenbank// übernommen werden. Dabei findet keine Synchronisation der Benutzer statt, sodass bestehende Benutzer weder in die AD übernommen, noch aus ihr gelöscht werden. Benutzer, die aus dem Active Directory gelöscht oder aus einer Gruppe entfernt wurden, werden nicht aus der ACMP Datenbank gelöscht, sondern lediglich aus den entsprechenden ACMP Gruppen entfernt.
257 257  
258 += Import Active Directory Users =
259 +
260 +In ACMP, one or more AD groups can be assigned to a group, linked by “or.” A mapping is displayed by a corresponding icon. All members of these groups can log in to the ACMP Console and have the rights assigned to their group. A prerequisite for this is that they are also members of the respective access group specified under [[AD Login>>doc:||anchor="HActiveDirectory-Anmeldung"]]. Manually adding users is not necessary in this case, but it remains possible, allowing users to be managed entirely within Active Directory.
261 +
262 +If a user logs in this way, the system automatically adds them to the ACMP Database. Alternatively, all users can be manually imported into the database using the //Import all new AD users from the AD access group into the database// function. This does not involve user synchronization, so existing users are neither imported into AD nor deleted from it. Users who have been deleted from Active Directory or removed from a group are not deleted from the ACMP Database, but are merely removed from the corresponding ACMP groups.
263 +
258 258  {{aagon.infobox}}
259 -Deaktivierte Benutzer werden nicht beim Benutzerimport berücksichtigt.
265 +Disabled users are not included in the user import.
260 260  {{/aagon.infobox}}
261 261  
262 262  (% style="text-align:center" %)
263 263  [[image:XWiki.Images.WebHome@hmfile_hash_3bb9c266.png||alt="9.3 - Loginprozess" height="542" width="715"]]
264 -Schema des Login-Prozesses
270 +Flowchart of the Login Process
© Aagon GmbH 2026
Besuchen Sie unsere aagon-Community