Creating Authorization Passwords for Users

Managers can create one-time or multiple-use authorization passwords to enable other users to complete authorization-protected tasks on an as-needed basis. This allows for greater security and auditing capability since managers no longer have to share their personal passwords. It also increases productivity since a manager no longer needs to be at a workstation to authorize specific tasks.

For example, only authorized users can approve pricing adjustments that exceed defined limits. Typically these users are in management positions. When a non-authorized user enters a pricing adjustment in order entry that exceeds the designated limits, the system displays the following prompt: Enter Authorized Password.

Two ways to respond to this prompt are:

To create authorization passwords, managers must be assigned the AUTH.PWD.MAINT authorization key. They can create one-time or multiple-use passwords, depending on the level assigned to the key.

Every time a user enters an authorization password at the Enter Authorized Password prompt, the system sends a message to the user who created the password. The message describes the password, who used it, and the reason for using it.

To create authorization passwords for users:

  1. Do one of the following to display the Authorization Passwords window:

  2. From the System > System Files > User Control menu, select Authorization Password Maintenance.

  3. From the User Maintenance window, select Maintenance >Authorization Passwords.

  1. In the Login Password field, enter the user's system password to access the password definition area of the window.

  2. In the Password field, enter a password. The system populates the remaining columns as follows:

If your authorization level is...

Then the password is set for...

0

one-time use. You cannot change this setting. The system deletes the password from the list after the first use.

1-998

multiple use for the number of days equal to the level number. If you change the date, it cannot be later than the system-generated date or earlier than the current date. The system deletes the password from the list following the expiration date.

999

multiple use with no expiration date. The password is available for use until you remove it from the list.

  1. To allow the password to be used just once, select the One Time option.

  2. To allow the password to be used multiple times for a limited period, enter an expiration date in the Expire Date field.

Note: This field does not apply if the password is set up for one-time use.

  1. Repeat steps 3 through 5 to set up additional authorization passwords.

  2. Click OK to save this information and return to the User Maintenance window.

  3. Save the updated user record.

See Also:

Additional User Record Information Overview

Creating User Records