Remediating Compromised Accounts
When Harmony Email & Collaboration detects compromised user accounts (BEC), it allows you to perform actions (Block User, Reset Password, Unblock User, and Reset Password & Unblock) on these accounts from the Harmony Email & Collaboration Administrator Portal itself.
|
Note - To take actions on user accounts, you must have Admin or Help Desk role for Harmony Email & Collaboration. For information about assigning roles, see Roles and Permissions. |
Blocking a User Account
To block a user account from the Harmony Email & Collaboration Administrator Portal:
-
Open the User page of the user you need to block.
-
From the User Meta Data section, click Block User.
or
From the Events page, click on the vertical ellipses icon (in the right side of the selected compromised account), and then select Block User.
-
In the Block User Account pop-up that appears, click OK.
|
Notes:
|
Resetting a User Account Password
To reset a user account password from the Harmony Email & Collaboration Administrator Portal:
-
Open the User page of the user you need to reset the password.
-
From the User Meta Data section, click Reset Password.
or
From the Events page, click on the vertical ellipses icon (in the right side of the selected compromised account), and then select Reset Password.
-
In the Reset User Account Password pop-up that appears, click OK.
One time password gets generated automatically and the User Account One-Time Password pop-up shows the password for the user account.
-
Share the one time password with the user.
Notes:
-
Resetting a user account password terminates all the active sessions associated with the account.
-
After logging in with the one time password, the user is prompted to set a new valid password.
-
Unblocking a Blocked User Account
To unblock a blocked user account from the Harmony Email & Collaboration Administrator Portal:
-
Open the User page of the user you need to unblock.
-
From the User Meta Data section, click Unblock User.
or
From the Events page, click on the vertical ellipses icon (in the right side of the selected compromised account), and then select Unblock User.
-
In the Unblock User Account pop-up that appears, click OK.
|
Note - The Unblock User Account option appears only for the blocked Google user accounts. For Microsoft user accounts, you can unblock the user account by using the Reset Password & Unblock User Account option. |
Resetting Password and Unblocking a Blocked User Account
To reset the password and unblock a blocked user account from the Harmony Email & Collaboration Administrator Portal:
-
Open the User page of the user you need to unblock.
-
From the User Meta Data section, click Reset Password & Unblock.
or
From the Events page, click on the vertical ellipses icon (in the right side of the selected compromised account), and then select Reset Password & Unblock.
-
In the Reset Password & Unblock User Account pop-up that appears, click OK.
One time password gets generated automatically and the User Account One-Time Password pop-up shows the password for the user account.
-
Share the one time password with the user.
After logging in with the one time password, the user is prompted to set a new valid password.
|
Note - The Reset Password & Unblock option appears only for the blocked user accounts. |
Monitoring and Auditing Actions on Users
Harmony Email & Collaboration audits all the user actions and adds them to the System Logs (System Settings > System Logs).
To monitor the action status of Microsoft user accounts, go to System Tasks (System Settings > System Tasks).