Updating user details

Use this task to modify or update a user's information.

Before you begin

  • You must have administrative permission to complete this task.
  • Log in to the IBM® Security Verify administration console as an Administrator.

About this task

The following information is displayed on the user's Profile tab.
User information
Table 1. User information
Information Descriptions
Status Slide to ON or Off to enable or disable the user.

Indicates that the user account is active. A user with an active account can sign in to Verify and to any application that the user is entitled to access.

The user account is initially enabled by default during creation. You can disable the account anytime for the following reasons or others:
  • Inactivity
  • Account was hacked or suspected of malicious activities.
  • Non-compliance to Verify policies, or terms and conditions

When an account is disabled, the user cannot sign in to Verify and to any configured application, regardless of the user's entitlements.

When a user is disabled in Verify, if the user has accounts on applications that are configured with a provisioning policy, the associated accounts are also suspended. See Configuring target applications for provisioning. These accounts are restored after the user is re-enabled in Verify.

Set expiration date You can optionally select the checkbox to specify whether and when the system disables the account automatically.
Note: The expiration date and time is set in your local time zone and is also shown in UTC.
An expired account is shown as disabled. To determine whether a disabled account is expired, go to the Admin activity or User activity report to see the logged event.
Basic user profile
Full name The given and surname of the user.
Given name

Given name of the user.

Middle name Middle name of the user.
Surname

Surname of the user.

User ID The identifier that is assigned to the user by Verify.
Username

Unique identifier for logging in to Verify. It can be the same as the email address of the user.

Realm

It is an identity provider attribute that helps distinguish users from multiple identity providers that have the same username.

This information is retrieved from the Authentication > Identity providers panel.

For the following identity providers:
  • Cloud Directory, the realm value is cloudIdentityRealm.
  • IBMid, the realm value is www.ibm.com.
  • SAML Enterprise, the realm value can be any unique name that you assigned when you created the identity provider.
  • OnPrem LDAP, the realm value can be any unique name that you assigned when you created the identity provider.
  • Apple, the realm value is www.apple.com.
  • Baidu, the realm value is www.baidu.com.
  • Facebook, the realm value is www.facebook.com.
  • GitHub, the realm value is www.github.com.
  • Google, the realm value is www.google.com.
  • LinkedIn, the realm value is www.linkedin.com.
  • QQ, the realm value is www.qq.com.
  • Renren, the realm value is www.renren.com.
  • WeChat, the realm value is www.wechat.com.
  • Weibo, the realm value is www.wiebo.com.
  • X, the realm value is www.twitter.com.
  • Yahoo, the realm value is www.yahoo.com.
External ID A reference attribute for use with external repositories and directories. This attribute is sometimes set to the DN or the ObjectGUID of the user from the external registry.
Preferred language The language of the user.
Email verified on When the user's email address was verified.
User information
Preferred e-mail

Email address of the user where notifications are sent such as the user's new password after a reset request, or the one-time password.

Mobile number

Contact number of the user where notifications are sent. For example, the one-time password.

Work number Contact number of the user at a work location or office where notifications are sent. This number can be either for a mobile phone or a land-line phone.
Contact information
Street address The address of the user.
City The city where the user lives.
State The state where the user lives.
Zip code The postal code of the users address.
Country The country where the user lives.
Formatted address A single attribute that contains the full address of the user.
Extended profile - employee information
Employee # The employee number of the user.
Job title The job title of the user.
Department The department of the user.
Manager The name of the user's manager. Because the manager must be an existing user in Verify, the field is a search field that you use to find and select the manager's name.
Custom user attributes A list of attributes that are tenant-defined attributes that can be created in Verify. See Managing attributes.
Email new account

When enabled, the account information is sent to the registered email address of the new user.

This option is only available when you add a user in the Cloud Directory identity source. You can control the initial state of this option in Directory > Users & Groups > Settings.

Security settings
Displays the date when the user's password was last changed. The password can be reset.
Groups
Displays a list of the groups that the user belongs to.
Linked identities
Displays a list identities for this user that link to other identity providers.
Delete the user
To delete this user, you must be an administrator.
Details
Lists information about the user account such as when it was added, when it was modified and when the user last logged in.

Procedure

  1. Select Director > Users and Groups.
    Ensure that the Users tab is the active tab.
  2. If the user is not displayed on the page, use the search function to find the user.
  3. Hover over the user and select the User details icon.
  4. On the user's page, select the Profile tab.
  5. Select the Edit icon .
    The Edit User Information dialog box is displayed.
  6. Edit the user information.
  7. Optional: Select whether to send an email notification to the user about the change to the profile information.
  8. Select Save.
  9. Optional: Reset the user password.
    Security settings displays the date when the user's password was last changed. To reset the user's password, you must be an administrator. Select Reset password and confirm that you want to reset the user's password by selecting Reset Password.
  10. Optional: Change the assigned password policy.
    Clear the field. Select from the drop-down menu the password policy that you want to assign to the user.
  11. Optional: Remove the user from a group.
    Groups displays a list of the groups that the user belongs to. To remove the user from a group, you must be an administrator. Select the Delete icon in the row and confirm that you want to remove the user from the group by selecting Remove.
  12. Optional: Remove linked identities from the user.
    To delete a linked identity from a user, you must be an administrator. To delete the account,select the Delete icon in the row and confirm that you want to delete this account by selecting Delete.
  13. Optional: Delete the user.
    To delete this user, you must be an administrator. Select Delete user and confirm that you want to delete this user by selecting Delete.