Link 1

USER REGISTRATION, AUNTHENTICATION
and
AUTHORIZATION (RAA) Engine
Overview
inteliscape User Registration, Authentication and Authorization (RAA) Engine enables an organization to manage the users
accessing both its external and internal system in a secure and efficient manner with minimal risks.
The RAA Engine has a User Registry which verifies if a specific user exists before the registration. Users can be registered via
Self-Service Process through a Login Page, or via the System Administrator in charge.
RAA’s powerful and secure engine minimizes the risks from all possible illegal user activity, due to fraud or misuse. inteliscape
RAA is a powerful tool that enables an enterprise systems of any type of architecture (SOA, 3-Tier and more), to manage users
securely and in a cost effective manner, thus decreasing the system’s administration costs.
In addition, the end users’ privacy is safeguarded by prohibiting direct access to their personal information. Predefined access
policies allow authorised users to only access the appropriate RAA logs’ information.
inteliscape RAA has been utilised in a vast variety of
Enterprise Solution systems:













Customer Portals
Employees Self-Service Portals
Partners External Portals
Internet Banking (Business & Retail)
Data Exchange Framework Systems
Payment Gateway
e-Signatures for e-Services Form
Stock Exchange OAM systems
Document Management Systems
Government Applications submissions Portals
Pollutant Release and Transfer Register Databases &
Portals
Online Store
E-Commerce
Features

Multi – Language support

‘Forgot Password and “Secret questions/answer”

Help Desk

Real-time email & SMS Registration Notifications

Audit Log Trail

Configurable Messaging Templates

Roles Definition

Users Access Rights

User Group Definition

Multi-Roles Enablement

Directory Service

Password Policies
Major Functionalities
User Registration: The User Registration Administration form facility of the RAA application enables power users like
Administrators (Internal Users) to keep a close control be able to maintain the users’ registration. Through a web user
interface, power users are able to create new users and define all the necessary information that need to exist in order to
be used throughout the system
User Authentication: Powerful Directory Services are utilised to authenticate users upon login. Stick password
predefined policies ensures secure users authentication. Power users are able to change the password policies from the
Policies Administration form according to the system requirements. Users account can be locked based on certain policies.
After a specific number of failed attempts during login, the user account will be locked automatically in order to secure the
entire system data. The failed attempts number is configurable by the System Administrator
User Authorization: Users are provided access rights to the desired content areas within the entire system, with the
appropriate permission tasks to perform. Also, users can provided access rights based on groups and/or Roles. RAA’s Log
Section presents the audit logging of all the registered users. System Administrators can perform search on the logs based
on preferred parameters
Reporting: The smart reporting facility produces different reports in order to provide in real time to power users an
update for all the procedures of the entire RAA module. This includes Registered Users, registered users and their
business, Unregistered Users and more.
Supported RDBMS Platforms:


.
Oracle Database 11g
Microsoft SQL 2012 Server
Users and Roles Management
inteliscape RAA Engine provides a very flexible users management facility, which allows for various roles to be defined based
on the system needs. Some examples are::







System Administrator
Business Administrator
e-Service Administrator
Notification Services Administrator
Contact Centre Agent User
End Users
and more….
The solution supports the addition of more roles as needed. Roles are configured based on privileges (functionality and
operations) allowed to be performed, using a flexible “Membership Provider” model:
Presentation tier
User Accounts can be stored:

On an Active Directory (AD) to be centrally
access by the organization. User identities
and relationships can be centrally configured
and administered system together with the
rest of the application settings.

On a database based on the “Membership
Provider” implementation for application rich
Application Server tier
access control and role settings.
Data Store
SQL
ADAM
Robust and Secure User Accounts Management.





Automatic account activation code generation
Passwords set by users with complex security rules for recovery (Secret Question/Answer)”
Passwords sent by email, or securely printed mail
Automatic Account locking in case of suspected compromise
Different user access rights based on user roles.
Additional Modules:
a) Management Information System Reporting: Custom report generation for power users like administrators
b) Audit Logging: All received and sent messages for are logged providing a legally binding history of all transactions and
the activities of both the e-Services and the e-Payment Service Providers
c) Storage: Data is stored in an SQL Database encrypted at record level
d) Customizable and multilingual user interface for payments