Application Guide for Oracle Self-Service E-Billing (Business Edition) > Enrolling and Managing Users >

Setting the Password and Security Question


All users must create a password, security question, and answer.

Table 7 lists and describes the Setting the Password and Security Question use case functions.

Table 7. Setting the Password and Security Question
Function
Description

Name

Setting the Password and Security Question

Feature Area

Enrollment

Primary User

Consumer user

Precondition

A B2B user has been provided a user name by the administrator.

The consumer must have completed the Self-Enrollment and received the email generated by that use case.

Trigger

The user clicks the HTTPS request sent in an email notification.

Configuration Points

  • The number of characters in a password. The Payment Card Industry (PCI) Data Security Standard requires a minimum of eight characters.
  • The complexity of the password.
  • The number of questions for the security question.
  • The list of security questions.

Main Path for Setting the Password and Security Question

The following path describes setting a password and security question:

  1. Oracle Self-Service E-Billing displays a form to the user where he or she must enter the following information:
    • User Name
    • Password - The password length and contents are configurable. By default, the password length is eight characters and it must contain at least:
      • One uppercase character
      • One lowercase character
      • One number
      • No spaces
      • Special characters are valid

        The password cannot be the same as the user name.

        The password cannot be the same as the previously entered password.

    • Confirm Password; must be the same as the previously entered password.
    • Select a security question. The list of security questions is configurable. By default, the list contains the following:
      • Best friend's name from childhood?
      • The name of the boy or girl you first kissed?
      • The place where you first met your spouse/significant other?
      • What is the make or model type of your first car?
      • What was the name of the school you attended in first grade?
    • Security Answer
      • Form box size of 30 to be consistent with others.
      • The minimum length of a security question is one character, and cannot be the space character. The minimum length is configurable.
      • The maximum length of the answer is 100 characters.
      • Oracle Self-Service E-Billing trims leading and trailing spaces and does not include these in the calculation of minimum and maximum lengths.
      • Spaces within the answer are valid.
      • Special characters are valid and enhance the security level of the answer.
  2. The user clicks Submit.
  3. Oracle Self-Service E-Billing validates the information on the form for the following:
    • Formatting
    • Completeness
    • User name and validation code within HTTPS request match in Oracle Self-Service E-Billing.
    • The account has not expired. The default time limit is four hours, which is configurable.
    • Password requirements
  4. Oracle Self-Service E-Billing sets the status flag in the database indicating this is an active user.

    The Login page appears and the following success message appears: Your security credentials have been accepted, please login to access your billing information.

Alternate Paths for Setting the Password and Security Question

The User Clicks Cancel

The user clicks Cancel and the Login screen appears.

Exceptions for Setting the Password and Security Question

The following exceptions can occur with this use case.

The Account Flag for Validation has Expired

Oracle Self-Service E-Billing displays a message that states:

Please contact a customer service representative at xxx-xxx-xxxx to have your account reactivated, as too much time has elapsed since you initiated the enrollment process.

One of the Form Fields is Left NULL When Submitted

Oracle Self-Service E-Billing displays the populated Enrollment form with the following error message: Please provide a value for ****

The Password or Confirm Password Does Not Meet the Requirements

Oracle Self-Service E-Billing displays the prepopulated Enrollment form with the following error message: Please provide a valid password and confirm password.

The Password and Confirm Passwords are Not Exactly the Same

Oracle Self-Service E-Billing displays the prepopulated Enrollment form with the following error message: Please provide a valid password and confirm password.

The Password is the Same as the User Name

Oracle Self-Service E-Billing displays the prepopulated Enrollment form with the following error message: Please provide a valid password and confirm password.

Application Guide for Oracle Self-Service E-Billing (Business Edition) Copyright © 2013, Oracle and/or its affiliates. All rights reserved. Legal Notices.