Active Directory-Based Administration

(Requires the High Security Module) In addition to or instead of EFT Server-managed administrator accounts, if using the High Security Module, administrator users can authenticate via Active Directory (AD). For remote connections, the connecting account must have access to the computer on which EFT Server is installed. Password complexity, expiration, and so on for AD accounts are managed by the AD server rather than EFT Server.

illust_localcomputeradmin.gif

You can add Active Directory users and groups as administrator accounts and the user or group appears in the Admin account names list on the Server's Administration tab. If a user account is added to EFT Server only as a part of a group, the user assumes the permissions of its group. If the user is a member of multiple defined groups, the permission (role) and assignment(s) allocated to the group that provides the most privileges are assigned to that user.

Once you have registered the High Security Module, you are allowed to delete EFT Server-managed administrator accounts and use AD-provisioned administrator accounts exclusively, if desired.