ZeroLock® Management Console: System Settings Homepage

Overview of the System Settings homepage found on the ZeroLock® Management Console

Overview


The System Settings screen consists of three (3) primary sections containing seven (7) nested, editable blocks.  Selecting Edit in the upper right corner of a section will open that section for editing.

Step_1_System Settings Main

 


Section 1

Service Provider Config

The administrator uses the values in this section to configure the ZeroLock Server application (ZeroLock Management Console) for your SSO IDP (Identity Provider).  The entries below are for example only and will not be the same for each client/organization.

Step_2_Service Provider Config

  • Entity ID – is a globally unique name for a SAML (Security Assertion Markup Language) entity, i.e., your Identity Provider (IdP) or Service Provider (SP).
  • Reply URL – is where the authorization server sends the user once the app has been successfully authorized and granted an authorization code or access token.

Identity Provider

The Identity Provider Config consists of four (4) fields:

Step_3_Identity Provider Config
  • IDP Identifier – is the name of the identity provider.  The IDP is the service that stores, creates, and manages digital identities.  In other words, it offers user authentication-as-a-service.
  • Login URL – the locator of a resource.  This is used to locate the address of a resource on the internet.
  • Logout URL – sends a logout request to the OAuth provider to logout from the provider while logging out the user from the application.
  • Certificate – represents that a certificate authority has verified that the web address belongs to the organization. If you have a certificate, you click Select File which opens the file location of the certificate. 

Section 1 Edit Window

Step_4_Service and Identity Provider Edit screen

When done editing, selecting Update will save any changes in this section.

Section 2

Date / Time

The Date/Time Display Preferences has three (3) fields.

Step_5_Date Time Display 
  • Format – The menu options are yyyy-MM-dd HH:mm or yyyy/MM/dd HH:mm.
  • Time Zone – The options in the drop-down menu are Local or Zulu.
  • Enable Shortening – if the checkbox is white, the timestamps displayed in some tables will switch to an “ago” format where the user is shown how much time has passed since the event occurred, rather than the timestamp itself.
    • For example, the Activity Log tracks every user’s activity using a default time setting of yyyy-MM-dd HH:mm. 
      Step_6_Activity Log Standard 
    • However, if Enable Shortening is selected, only the number of seconds, minutes, or hours since the activity occurred is displayed.
      Step_7_Activity Log Enabled

General

The General block has two (2) fields:

Step_8_General-1 
  • Require Email Validation – if the checkbox is white, it is enabled.  Email validation is a method of determining whether or not an email address is reachable and valid. It also verifies whether a specific email address is associated with a reputable domain.

  • UI Server Session Timeout - the options are 5, 15, or 30 minutes.

Email

The Email block sets the email for sending system-generated emails such as Alerts.  This block has seven (7) editable fields and a Send Test Email button.

Step_9_Email
  • Enabled – if the checkbox is white, sending an email is enabled.
  • SMTP Server – the name of the SMTP (Simple Mail Transfer Protocol) server.
  • SMTP Port – the assigned port for SMTP.
  • From Address – the email address sending the Alert.
  • Use TLS – if the checkbox is white, TLS (Transport Layer Security) is used, data sent will be encrypted.
  • Use Username – if the checkbox is white, a username is required.
  • Use Password – if the checkbox is white, a password is required.
  • Send Test Email - will generate an email.

When done editing, selecting Update will save any changes in this section. 

HTTP TRANSPORT

Step_10_HTTP Transport

Enabled - HTTP Transport ability is active.

Hostname - is the name of the server being used.

Port - the port being used. The default is 443 or, for demo instances, 8088.

Use TLS - if the checkbox is white, TLS is active.

Path - by default this is usually /services/collector/event.

AUTH Header - provides credentials that authenticate a user to a server.

Username - contained in the AUTH Header.

Password - contained in the AUTH Header.

 

Section 2 Edit Window

Step_14_Section 2 Edit Window


Section 3

Backup Config

Backup file location:  ~/zerolock-server/database/mariadb/zerolock-server-backup

Backup Config Results

Backup is not enabled by default so it must be enabled 

There are three (3) editable fields:

  • Enabled - a white checkbox indicates that the system configuration backup is enabled.Backup Config v3.1.5

  • Interval - consists of four (4) interval options:  Hourly, Daily, Weekly, and Monthly.
  • Next Datetime - is when the next backup is scheduled. The format is mm/dd/yyyy and hh:mm (a|p)m.

 

Section 3 Edit Window

On selecting UPDATE, the next daily backup has been scheduled.

Step_13_Backup Section Edited for Backup-1