Table of Contents
Paradox provides you the option to allow your employees (with login access) to use their employee ID as a login method.
Configuration
Users with full access to Data Feeds and Client Setup can complete the below steps in configuring this login method.
Step #1: Ensure all employees have an employee ID
All users must have an employee ID assigned to them in the CEM before enabling this setting. You can update employee details or add employees to the system manually or via Data Feeds.
Manually
When creating a new user or updating a user’s information manually from the Employees page, it is important to note that while both the Personal Phone Number and Work Email fields will display as required, only one of them is necessary. Ensure to enter one of these contact methods, based on the employee’s preference.
Data Feeds
Update any existing user records with their employee ID if not already included in the CEM. This can be done through a one-time Employee Feed.
For new employees added to the system after Employee ID is designated as the Login Method, you will need to include both the Employee ID and at least one contact method for each new employee: either a personal phone number or work email.
Additionally, the Advanced Settings Employee ID (EID) toggle will be turned on and read-only by default. EID will be used as the unique identifier and will be required for every record created/updated.
A Required Field error will display if the file does not contain a mapping to EID.
Step #2: Enable setting in Client Setup
Once existing users have an employee ID tied to their profile and future processes for adding new employees have been updated with the employee ID and contact method requirement, then this setting can be enabled in Client Setup.
To do this, users with full access to Client Setup can complete the below steps.
- Select All Apps from the top left corner of the header and then Settings in its drop-down menu.
- When the Settings page opens, select Client Setup under Paradox Tools.
- Client Setup will then open. From the left panel, scroll down to and open the Data Privacy section.
- From the Login Method setting, select Employee ID.
-
Notes:
- You will not be able to update this setting if there are existing users that do not have an employee ID.
- This option will be available for all accounts, including those that are not using Employee Communications.
-
Notes:
- Save the page.
In the current state, if two accounts use employee ID as the login method AND the employee ID entered by a user exists in both accounts, the user will not be able to log in or be sent a verification code. We are actively working on a long term solution for this issue.
Employee experience
If you have this feature enabled, then the login experience will remain the same except involve the user entering their employee ID instead of their email address. For users without login access, their experience includes the following:
- The employee will enter in their employee ID in order to be identified.
- On the next screen, they will select whether they want their verification code to be sent to their login email address or personal phone number.
- Note: If the user has a generated login email, we will not display that as an option.
- They will then click Send Code.
- On the new screen that displays, they will then enter in the code sent to the communication method they selected.
Enter Password Screen Troubleshooting: If a user inputs an employee ID that does not match any existing user in the system, they will be moved to the Enter Password screen. This is a standard security measure to prevent attackers from being able to know when they’ve entered a valid value or not.
This is important to remember when troubleshooting. In the event that a user assigned to a role with no login access is brought to the Enter Password screen after entering their employee ID, it may mean that they’re entering in an incorrect value.