ESR Access Guidance docx

ESR Access
You now have access to the Electronic Staff Record (ESR). The URL to
access ESR is:
https://esr.mhapp.nhs.uk/OA_HTML/AppsLogin
A user name and password has been given to you by a System
Administrator in the ESR team.
ESR is a live HR/Payroll system and all changes made will impact on live
data. Only authorised persons are permitted to use ESR.
Please note that any amendments/changes applied to ESR are
flagged with a user name and date of change for Audit purposes.
Passwords MUST NOT be shared and employees must not allow
others to use ESR on their behalf.
Employees must ensure that they log out of the system whenever they
leave their workstation, as they will be held accountable for any changes
in the Audit trail.
Maintaining Passwords
Password reset – (forgotten password)
The User MUST contact the ESR System Administrator if they cannot
remember their password.
Password reset – (disabled login)
After three failed attempts by a User to login, the system will
automatically lock their User account.
If either of the above occurs the ESR System Administrator must
reactivate the User account by defining and entering a new password,
which will be issued to the User.
For security reasons, the Local System Administrator will require the
User to provide their username as proof of identification. If the User is
unable to do this, they will be sent an e-mail via the e-mail address held
on ESR with their username and password (emails cannot be sent to
home email accounts).
User Passwords
User Names must be unique to the system and have a password
allocated.
The User must use the password issued to them the first time they log
on. The system will then automatically prompt the user to change it to
one of their choice.
A User Password, once changed by the User, cannot be seen by them or
anyone else.
The system will ensure that certain defined words cannot be used as User
passwords.
Rules
The Password must:
Be alphanumeric – for example, Flower01
Have a minimum length of 8 characters
Have a hard to guess profile set – this is defined by McKesson and
an error will occur if this is breached
Have a 30 day lifetime
Suspend after 3 consecutive failed logon attempts
Passwords Cannot:
Be the same as a user name
Be reused until 5 changes have been made
Contain sequential repeating characters/numbers
ESR User Guides
ESR User Guides for Employees, Supervisors, Administrators and
Managers can be obtained from ESR team.
Contact
To contact an ESR System Administrator:
Telephone: Heidi Richardson on 01443 824175
Email: [email protected]