The OneSpan Mobile Portal provides user management features. With this, it enables you to offer your users self-service onboarding.
Types of user accounts
In general, two different types of users exist in the portal, administration user accounts - with user management permissions - and regular user accounts.
Administrator user accounts
Administrator users have user management permissions for accounts belonging to your global account, including other administrator accounts. Administrator users can create, delete, and view other user accounts, and reset other users’ passwords.
Viewing other accounts includes user details such as the user’s full name and email-address, their rule, account status etc. Administrator users can also view a history list of the last 20 events for that user account.
Event history parameters
The event history includes the following parameters:
Sign-in Time: the time(s) the user signed in to the OneSpan Mobile Portal.
Event: the actual event, for instance
PasswordChangeorSignIn.Result: result of that event. Possible values:
Passed
Blocked
Risk Level: the risk level is determined by analyzing various factors related to the sign-in request for example: device, location, and IP address.
Possible values:
Low
Medium
High
Risk Decision: assesses sign-in attempts for potential fraud and enforces actions like blocking, or allowing access based on the calculated risk.
Challenge: the type of challenge for a Challenge-Response authentication.
Device Name: name of the device used to sign-in the account.
IP Address: the IP address which is used to sign-in the account.
Location: the country from where the user signed-in.
Feedback: captures whether a sign-in operation was legitimate or fraudulent.
The Mobile Portal prevents any administrator from deleting their own as well as the last administrator user account.
User accounts
Regular user accounts do not have user management permissions and cannot access information about other users from your global account.
Create user accounts
Administrator accounts can create other user accounts by following the steps listed below.
To create a user account
Click the Users button in the navigation ribbon to access the Mobile Portal user management screen.
Click Create to open the input form.
Enter the full name, email address, and role of the new user.
Click Create.
The Mobile Portal allows you to preview the information you have entered before you save it, and validates the input, e.g., if any required information is missing. Input is validated upon clicking Create after filling in the entire form. If input validation has detected errors, the portal will not create the user but display an error message instead, prompting you to fix the errors in the input form.
Password management
Administrator user accounts have the permission to reset the password of another user account, including other administrator user accounts, if the user has been onboarded correctly into the OneSpan Mobile Portal.
To reset a password
Open the Users page in the portal.
Find the relevant user in the user list, and click the three vertical dots at the end of that row.
Click Reset Password.
The portal displays a dialogue for you to confirm the password reset. If you have verified you selected the correct user, click Reset password.
The user will be sent a temporary password and must set a new password before signing in again.
You are taken back to the Users list, and the portal will display a confirmation message that the user password has been reset.