How to administrate users with UCS

User administration is a key feature of UCS and can be accessed through the „User“ module. In this article and the corresponding Howto video tutorial, I will explain its primary functions. These include:

  • searching for users
  • creating users
  • modifying user attributes
  • the detailed user overview
  • editing passwords of single or multiple users simultaneously
  • deleting users
  • administration of users in groups

How To: Configuring UCS Self Services for New Features

A major benefit of UCS is that users can log in to a variety of services which are operated on UCS and which are used in their respective organisations with the same user name and password they usually use. In the past, users could change their password through the Univention Management Console (UMC). Via the entry User settings / Change password a new password could be set after entering the old one. However, if the user had forgotten their old password, they had to contact the administrator to have them reset the password.

With the current UCS version 4.4, all of this can be done with the new function of the App Self Service without needing help from the administrator. Indeed, all you need is the user’s e-mail address (or mobile phone number to receive an SMS). Moreover, the UCS Self Service enables users to edit their own contact information and, for example, upload a profile picture or enter an address and further data.

How To: Upgrade to the new UCS version 4.4

In March we launched the fourth minor release for Univention Corporate Server 4. The current version 4.4 offers a number of new features, as well as increased security and more convenience. In the blog article UCS 4.4 Release – Admin Diary, Self Services and Windows Domain Trusts we discussed the highlights of the new UCS version. With this article we will now demonstrate how easy it is to update to the new UCS – depending on your personal preferences either through the Univention Management Console (UMC) or using the commandline.

UCS: How to set up LDAP Replication

The central element of every identity management system is usually a directory service, a repository that stores and manages information like user profiles and access privileges, and network resources. Univention Corporate Server (UCS) uses OpenLDAP for this task.
If the directory service is down, many other services are no longer available. In this article we are going to show you how to plan a fail-safe environment for your UCS domain with LDAP replication, i.e., storing an exact copy of the data on multiple servers – this improves the reliability as well as the performance.

UCS 4.4: How to configure RADIUS

RADIUS (Remote Authentication Dial-In User Service) is a central component of UCS and enables you to control access to WLAN networks for users, groups, and devices. In January we published a blog post with a short introduction to RADIUS, and in this article I’m going to explain how to set up RADIUS for your UCS domain. This article also covers the new features in UCS 4.4.

How-To: Single Sign-On for Nextcloud

sso_ucs_nextcloud_Blogheader

Log in once and automatically gain access to all programs and services – Single Sign-On (SSO) is a proven tool against the ever-increasing password fatigue among users. This is why many companies and educational institutions make it possible for users to log on centrally and only once.
It is also easy to set up Single Sign-On with UCS (see links at the end of this article). In this article I would like to show you how to link Nextcloud to UCS’s SSO mechanism.

How-To: Securing Networks with RADIUS

UCS-Radius-blog-header

Many organizations and educational institutions allow users to work on their personal laptops, tablets and smartphones. Bringing Your Own Device (BYOD) is popular because it reduces the financial burden on businesses and gives users a greater freedom of choice as well as their familiar working environment. Before users connect to the school or corporate Wi-Fi with their personal devices, administrators should think about security so that the devices do not become a gateway for malware.

How-To: Administration of Groups in UCS

Whether it’s for access to the UCS portal, printers, or files, users’ authorizations in UCS are defined by their group memberships. This process facilitates the administration of authorizations in large environments in particular as there is no need to assign individual authorizations to each user separately. The group administration reduces the administrative efforts required when mounting new services to the central IDM especially if these services can be made available to defined groups in one go.