Managing 2-step Backend Authorization

From osCommerce Wiki
Jump to navigation Jump to search

Note: This manual is for osCommerce v4.

After you accessed the admin area of your website click on Settings, Configuration and My Store tabs. Find 2-step backend authorization functionality. On this page you can enable/disable 2-step backend authorization functionality by clicking on it, then on Edit button and then choosing either True or False. You can also specify 2-step backend authorization service by clicking on it, then on Edit button and then choosing either email or sms. If you choose sms for 2-step backend authorization service you can click on 2-step backend authorization SMS service, then on Edit button and then choose the required SMS service.

Note: If you choose sms for 2-step backend authorization service the system will try to send the sms per your request. But if the sms service is not available for any reason the system will send the email by default.

Note: Only the setup sms services will be available for choice for 2-step backend authorization SMS service. See how to set up these services further in this manual.

Click on Managers and Members tabs. Click on the required member and then on Edit button or click on Insert button to add a new member.

While adding/editing a member you can specify what 2-step authorization override you can choose for this member (if Global configuration is chosen the global settings (as described above) will be applied to this member, the other options are self-explanatory).

Click on Managers and Access levels tabs. Click on the required group and then on Edit button or click on Insert button to add a new group.

While adding/editing a group you can check/uncheck the boxes next to SMS Services and SMS Service Configuration options.

If the boxes next to SMS Services and SMS Service Configuration options are checked the member for the corresponding group will be able to access and set up SMS services. Click on Modules, SMS Services and SMS Service Configuration tabs. Click on the required service, install, enable and set it up accordingly.

You can manage the SMS templates by clicking on Design and CMS and SMS templates tabs. You can add a new SMS template by clicking on Insert button or edit or delete the existing SMS template by clicking on it on the corresponding buttons.

While adding/editing a SMS template you can specify its type from the drop down list, choose the required front end and the language by clicking on the corresponding tabs, add key by clicking on the corresponding button and add/update SMS template body.

You can also manage the email templates by clicking on Design and CMS and E-mail templates tabs. You can add a new email template by clicking on Insert button or under All tab you can edit or delete the existing email template by clicking on it and then on the corresponding buttons (the highlighted email templates are connected with the functionality described in this manual).

While adding/editing an email template you can specify its type and design template from the drop down list, choose the required front end, format and language by clicking on the corresponding tabs, add key by clicking on the corresponding button and add/update the email template title and content.

You can also view the log-in statistics for a certain member by clicking on him/her and then on the corresponding button.

You can view the information in the columns.

You can also view the registered devices for a certain member by clicking on him/her and then on the corresponding button.

You can view the information in the columns as well as block the required device ID by clicking on the corresponding button.

Note: Under Device ID the system recognizes the device itself as well as the browser version used when logging-in. If this version is updated the Device ID will be changed.

You can also view the log-in security keys for a certain member by clicking on him/her and then on the corresponding button.

You can view the information in the columns as well as delete the required member login security keys by clicking on the corresponding button.

If member login security keys are deleted this member will be required to set them up again.

You can also view the login sessions for a certain member by clicking on him/her and then on the corresponding button.

You can view the information in the columns as well as delete the required member login session by clicking on the corresponding button.

Note: If the last member login session is deleted while this member is still logged in this member will be required to login to the backend again.