Guardian News & Media
GNM RCS
User management
Functional specification
Prepared by O3 Team Limited
Authors Nigel Robson
Creation date 23/10/2013
Document Ref. GNM_RCS_User_Management_FS.docx
Version draft for review
.
.Introduction
Purpose
The Rights and Contributors System is relied upon for all content purchases, for rights management, and for syndication deals relating to that content.
Within GNM many departments use RCS, including all the Editorial desks, the Picture desk, the Editor’s office, Finance department, Accounts (AP & AR), and the Rights department. Each user in those departments has their own login and password, and a user profile that matches their access requirements and spending and/or approval permissions.
This document outlines the user management facilities within RCS.
Scope
This document is intended as a high-level document outlining how user accounts are managed in RCS and SLM. It is not a detailed functional specification from which the system could have originally been developed.
Separate Technical specifications document the implementation of these functions.
.System users
User are first trained by the RCS Administrator, and then they are allocated a username and password giving them access to RCS. Every user must have their own username and password for security reasons, and to provide an audit trail of actions they take within the system.
Their access to the system is controlled by their business area, and their role within that, by their spending limits, by their cost centre permissions, and by the format(s) they process.
Additonal user details can be recorded, such as a list of people the user commissions on behalf of, and periods when they are out of the office, and the offices they process content from (UK, Australia, and/or America).
There are 3 users screens in RCS, all of which are implemented by the same underlying physical screen operating in different modes:
Active users
This screen can be used to manage or setup all RCS and SLM active logons;
Users
This version of the screen is the same as the Active users screen, except that disabled logons can also be seen, and potentially re-enabled. Logons are disabled whenever a user no longer needs access to RCS/SLM e.g. when they leave GNM, or if they cease to have RCS related responsibilities; and
Syndication users
The Syndication users screen only shows syndication users – both enabled and disabled.
.Database user integration
The creation of system users in any of the User screens creates a corresponding database user with the appropriate password and database roles.
Passwords are stored in DES3 encrypted format, and their display is suppressed. The passwords also have to comply with GNM’s password policy.
Database roles are granted to users upon creation, and these roles depend on the business area and role assigned to the user. The database roles also control which menu otions users have access to within the system.
Disabling a system user will remove the database user for security reasons.
If any of the logon, password or role data changes in one of the screens the corresponding changes are made to the database user.
End of Document
<enter keywords here>
Keywords (or tags) are important to provide accurate search results. They are vital if you have attached rather than pasted content to this page.