Introduction #
The system layer enables highly secure management of access to and modification of Silicon ioi ERP data. It is very important to understand the architecture
Users and authorizations #
The system comes with a user authentication system. It manages user accounts, authorizations (role-based) and user sessions (cookie-based).
The user authentication system comes with a number of ready-to-use functionalities:
- User,
- Roles
- Document type authorization,
- Authorization level,
- Role authorization manager,
- User authorizations,
- Restrict views and forms,
- Password hashing,
- Password strength check,
- Limiting login attempts,
- Third-party authentication such as OAuth, Google, Facebook, etc.
Users #
A user is a person authenticated by the system, with the right to access it. Access is based on assigned roles.
The essential identification key is the user’s e-mail address. Except for the “Administrator”, who is a special user with the highest rights.
User type #
In Silicon ioi, there are two basic types of user:
- System Users: Users with access to internal data, known as “Desk” mode,
- Website Users: External users with access to the web only.
It’s very important to distinguish between them.

In order to validate registered e-mail addresses, a validation e-mail will be sent to the new user in question.
Astuce
Sandboxing" mode is also active for user creation. Please note that this allows you to create users without actually validating the e-mail address.

Essential elements for access #
Please assign/complete the following parameters directly:
- Language and “Timezone”

- Assigned roles. See “User roles” :

It is very important that this message appears:

If not, your e-mail settings are faulty and Silicon ioi will not be able to send you any e-mail.
Here is the content of an account validation e-mail:

Here is the validation and password request form when you click on the link:

Message of insufficient complexity :

Connection without role #
No compromise on security. No role, the user remains on the defined Silicon ioi web “home page” (ideally the configured website).
Create your website with Silicon ioi, and it will be interactive with ERP data and settings, without the need to synchronize or interconnect the ERP with the website.
Logout #
When a user logs out, he/she returns to the Silicon ioi web “home page” defined (ideally the configured website).
Build your website with Silicon ioi, and it will be interactive with ERP data and settings, without the need to synchronize or interconnect the ERP with the website.