To allow setup and maintenance of any staff who are to
have access to Argos
- Control | Edit/View Staff Codes
Dialog Details
Detail Specific Fields
Field | Description |
Logon Code |
|
Name |
|
Staff Position | [F2] to the Staff Position if required |
Notes | Enter any notes related to the Staff user |
| Preset Privilege Level | 
|
| Administrator | Tick on if the staff member is to have Administrator
rights |
| Use Staff Presets | Tick on if the staff member is allowed to use
Staff Presets |
| Can Set Staff Presets | Tick on if the staff member is allowed to set
Staff Presets |
| [Button] | Explanation |

| [F2] to  the Staff/Staff Group Relationship |

| Allows
the created of an access token to enable rPPSR registration and maintenance
rights
This
will launch a website which you access with your Real Me Account
Follow the Prompts and you will be granted a token
|
| Allows the granted token to be
revoked if the staff member no longer has rPPSR access rights |
 | 
Password Rules
- Passwords must be at least 8 characters long
- If a password is shorter than 8 characters, it will be rejected with a clear error message.
- Passwords may be up to 128 characters long
- Passwords do not expire automatically.
- Users are not required to change their passwords periodically.
- When an administrator creates or resets a user’s password:
- The user will be required to change their password at first login.
- Accounts will be locked after 10 consecutive failed login attempts.
- Locked accounts will:
- Automatically unlock after 30 minutes, or
- Be manually unlocked immediately by an administrator.
- Passwords are never stored in plain text.
- All passwords are securely hashed using one of the following:
- bcrypt (cost ≥ 12)
- These methods are verified through code review to ensure compliance.
- All password-related actions are recorded for security and auditing purposes, including:
- Password changes
- Password resets
- The Vault and Bailment systems enforce identical password rules, ensuring a consistent user experience and security standard.
- New users cannot be created without a password being set at the time of creation.
- For security monitoring and auditing, the system records:
- Last Successful Login
- Last Failed Login Attempt
- Total Login Attempt Count
|
| Vault/Bailment Application
If a staff user is locked out for Vault and Bailment due to entering their password incorrectly ten times, an Administration user can unlock their login with this button
Bailment Web If a staff user is locked out of the bailment website with the message “User already logged in”, this button will reset their login
|