{"id":18798,"date":"2026-06-09T06:21:16","date_gmt":"2026-06-09T06:21:16","guid":{"rendered":"https:\/\/tenthplanet.in\/idempiere\/?p=18798"},"modified":"2026-07-27T11:02:56","modified_gmt":"2026-07-27T11:02:56","slug":"how-to-configure-user-window-in-idempiere-for-retail","status":"publish","type":"post","link":"https:\/\/tenthplanet.in\/idempiere\/how-to-configure-user-window-in-idempiere-for-retail\/","title":{"rendered":"How to Configure User Window in iDempiere for Retail"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Learn how to configure the User Window in iDempiere for retail \u2014 create users, assign roles, map org access, and manage user status.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Introduction<\/strong><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">The <strong>User Window<\/strong> in iDempiere is the central screen for managing system users. It allows administrators to create user accounts, set login credentials, assign roles, and control which organisations a user can access. Each user record holds identity details, authentication settings, and access control mappings.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In retail, the User Window is used to set up every person who interacts with iDempiere &#8211; from cashiers and warehouse staff to store managers and finance personnel. Roles such as POS Operator, Inventory Clerk, and Retail Manager are linked to individual users here, ensuring each person sees only the screens and functions relevant to their job.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The following rules govern user management in iDempiere for retail operations:<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Process Flow<\/h2>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"372\" src=\"https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/User_Window_Configuration-1024x372.png\" alt=\"\" class=\"wp-image-22139\" title=\"\" srcset=\"https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/User_Window_Configuration-1024x372.png 1024w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/User_Window_Configuration-300x109.png 300w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/User_Window_Configuration-768x279.png 768w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/User_Window_Configuration-1536x559.png 1536w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/User_Window_Configuration.png 1573w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Prerequisites<\/strong><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Ensure the following configurations are completed before configuring the User Window in iDempiere:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Roles must be created and permissions configured in the Role Window.<\/li>\n\n\n\n<li>Organisations (branches) must be defined in the Organisation Window.<\/li>\n\n\n\n<li>The client and tenant configuration must be complete.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Business Rules<\/strong><\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Name is mandatory when creating a user record. A record without a name cannot be saved.<\/li>\n\n\n\n<li>Login Name must be unique across the system. Duplicate logins are rejected by iDempiere.<\/li>\n\n\n\n<li>Password must be set during user creation. Users cannot log in without a password.<\/li>\n\n\n\n<li>A user must have at least one Role assigned before they can access any iDempiere window or transaction.<\/li>\n\n\n\n<li>A user must have at least one Organisation assigned under Org Access before they can process transactions for that organisation.<\/li>\n\n\n\n<li>Organisation Access determines which branch or company data a user can view and modify. Without org access, the user cannot load any transactions.<\/li>\n\n\n\n<li>The Active checkbox controls whether a user can log in. Deactivating a user blocks all login attempts without deleting the record.<\/li>\n\n\n\n<li>User Roles can be individually enabled or disabled. A disabled role remains on the record but has no effect on user access.<\/li>\n\n\n\n<li>Organisation Access entries can be individually enabled or disabled. A disabled org access entry removes access to that organisation without deleting the mapping.<\/li>\n\n\n\n<li>Deactivating a user instead of deleting preserves the audit trail and transaction history associated with that user.<\/li>\n\n\n\n<li>A user&#8217;s default role and default organisation are pre-populated when they log in. These should be set to the most commonly used role and branch.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Navigation<\/strong><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Menu Path: <\/strong>System Admin \u2192 Security \u2192 User<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The window displays all existing user records. Use the search bar to locate a user by name, login, or email. Filters can be applied on the Active field to show only active or inactive users.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Step-by-Step Configuration<\/strong><\/h2>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Step 1: Open the User Window<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Navigate to System Admin \u2192 Security \u2192 User. The window lists all existing users. Each row shows the user name, login, email, and active status. Locate an existing user to edit, or proceed to create a new record.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"660\" src=\"https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-2-1024x660.png\" alt=\"\" class=\"wp-image-18800\" title=\"\" srcset=\"https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-2-1024x660.png 1024w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-2-300x193.png 300w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-2-768x495.png 768w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-2-1536x990.png 1536w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-2-2048x1320.png 2048w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"657\" src=\"https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-1-1024x657.png\" alt=\"\" class=\"wp-image-18799\" title=\"\" srcset=\"https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-1-1024x657.png 1024w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-1-300x192.png 300w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-1-768x493.png 768w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-1-1536x986.png 1536w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-User-1-2048x1314.png 2048w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Step 2: Create a New User Record<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Click the New Record icon (+) in the toolbar to open a blank user form. Fill in all mandatory fields before saving. The form covers identity details, login credentials, and contact information.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Field Reference \u2014 User Header<\/strong><\/h3>\n\n\n\n<figure class=\"wp-block-table\"><table><thead><tr><td><strong>Field<\/strong><\/td><td><strong>Sample Value<\/strong><\/td><td><strong>Description<\/strong><\/td><\/tr><\/thead><tbody><tr><td>Name<\/td><td>Thierry<\/td><td>Full name of the user. Displayed throughout iDempiere.<\/td><\/tr><tr><td>Login<\/td><td>Thierry<\/td><td>Unique login ID used to sign in to iDempiere.<\/td><\/tr><tr><td>Password<\/td><td>\u2022\u2022\u2022\u2022\u2022\u2022\u2022\u2022<\/td><td>Login password. Stored encrypted.<\/td><\/tr><tr><td>Email<\/td><td>thierryidempiere@gmail.com<\/td><td>Used for notifications and password reset.<\/td><\/tr><tr><td>Title<\/td><td>Senior Purchase Manager<\/td><td>Internal notes about the user&#8217;s role.<\/td><\/tr><tr><td>Phone<\/td><td>98765-43210<\/td><td>Contact number for the user.<\/td><\/tr><tr><td>Organisation<\/td><td>Chennai Retail<\/td><td>The primary organisation the user belongs to.<\/td><\/tr><tr><td>Active<\/td><td>\u2714 Checked<\/td><td>Controls whether the user can log in to iDempiere.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Step 3: Assign User Roles<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">After saving the header, navigate to the Roles tab at the bottom of the User Window. This tab maps roles to the user and controls what screens and actions the user can access.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Click the New Record icon (+) in the tab toolbar. Select the appropriate role from the Role dropdown. Set Active to checked to enable the role. Repeat for each role the user requires.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Field Reference \u2014 Roles Tab<\/strong><\/h3>\n\n\n\n<figure class=\"wp-block-table\"><table><thead><tr><td><strong>Field<\/strong><\/td><td><strong>Sample Value<\/strong><\/td><td><strong>Description<\/strong><\/td><\/tr><\/thead><tbody><tr><td>User\/Contact<\/td><td>Thierry<\/td><td>Auto-populated from the parent user record.<\/td><\/tr><tr><td>Role<\/td><td>POS Operator<\/td><td>The iDempiere role being assigned to this user.<\/td><\/tr><tr><td>Active<\/td><td>\u2714 Checked<\/td><td>Enable or disable this role assignment. Unchecking disables the role without removing it.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Sample Role Assignments \u2014 Retail<\/strong><\/h3>\n\n\n\n<figure class=\"wp-block-table\"><table><thead><tr><td><strong>User<\/strong><\/td><td><strong>Role<\/strong><\/td><td><strong>Active<\/strong><\/td><\/tr><\/thead><tbody><tr><td>Thierry<\/td><td>POS Operator<\/td><td>Yes<\/td><\/tr><tr><td>Rajan Kumar<\/td><td>Inventory Clerk<\/td><td>Yes<\/td><\/tr><tr><td>Priya Nair<\/td><td>Retail Manager<\/td><td>Yes<\/td><\/tr><tr><td>Sundar Das<\/td><td>Finance Viewer<\/td><td>Yes<\/td><\/tr><tr><td>Admin User<\/td><td>System Administrator<\/td><td>Yes<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td><strong>Note: <\/strong>To disable a role without removing it, uncheck the Active field on the role line. The role remains visible on the tab but has no effect on user access.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"338\" src=\"https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-UserRoles-1024x338.png\" alt=\"\" class=\"wp-image-18801\" title=\"\" srcset=\"https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-UserRoles-1024x338.png 1024w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-UserRoles-300x99.png 300w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-UserRoles-768x254.png 768w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-UserRoles-1536x507.png 1536w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-UserRoles-2048x676.png 2048w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Step 4: Enable or Disable User Roles<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Individual role assignments can be enabled or disabled at any time without deleting the mapping. This is useful when a user temporarily takes on a different responsibility or when access needs to be suspended for one role only.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Open the Roles tab for the user.<\/li>\n\n\n\n<li>Locate the role assignment to be changed.<\/li>\n\n\n\n<li>Uncheck Active to disable the role. Check Active to re-enable it.<\/li>\n\n\n\n<li>Save the record using the disk icon or F10.<\/li>\n\n\n\n<li>The change takes effect at the user&#8217;s next login.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Step 5: Configure Organisation Access<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The Org Access tab controls which organisations (branches) the user can access. A user can only process transactions for organisations listed and enabled in this tab.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Click the New Record icon (+) in the Org Access tab toolbar. Select the Organisation from the dropdown. Confirm Active is checked. Repeat for each branch the user needs access to.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Field Reference \u2014 Org Access Tab<\/strong><\/h3>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><td><strong>Field<\/strong><\/td><td><strong>Sample Value<\/strong><\/td><td><strong>Description<\/strong><\/td><\/tr><\/thead><tbody><tr><td>User\/Contact<\/td><td>Thierry<\/td><td>Auto-populated from the parent user record.<\/td><\/tr><tr><td>Organisation<\/td><td>Chennai Retail<\/td><td>The branch or company the user is granted access to.<\/td><\/tr><tr><td>Active<\/td><td>\u2714 Checked<\/td><td>Enable or disable access to this organisation.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Sample Org Access \u2014 Retail<\/strong><\/h3>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><td><strong>User<\/strong><\/td><td><strong>Role<\/strong><\/td><td><strong>Organisation<\/strong><\/td><td><strong>Active<\/strong><\/td><\/tr><\/thead><tbody><tr><td>Thierry<\/td><td>POS Operator<\/td><td>Chennai Retail<\/td><td>Yes<\/td><\/tr><tr><td>Rajan Kumar<\/td><td>Inventory Clerk<\/td><td>Bangalore Retail<\/td><td>Yes<\/td><\/tr><tr><td>Priya Nair<\/td><td>Retail Manager<\/td><td>* (All)<\/td><td>Yes<\/td><\/tr><tr><td>Sundar Das<\/td><td>Finance Viewer<\/td><td>Chennai Retail<\/td><td>Yes<\/td><\/tr><tr><td>Sundar Das<\/td><td>Finance Viewer<\/td><td>Bangalore Retail<\/td><td>Yes<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td><strong>Note: <\/strong>Organisation = * (All) gives access to every branch in iDempiere. Assign this only to administrators or head office users who must manage all locations.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"328\" src=\"https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-OrgAccess-1024x328.png\" alt=\"\" class=\"wp-image-18802\" title=\"\" srcset=\"https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-OrgAccess-1024x328.png 1024w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-OrgAccess-300x96.png 300w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-OrgAccess-768x246.png 768w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-OrgAccess-1536x492.png 1536w, https:\/\/tenthplanet.in\/idempiere\/wp-content\/uploads\/sites\/13\/2026\/06\/TenthPlanet-iDempiere-Masters-OrgAccess-2048x656.png 2048w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Step 6: Enable or Disable Organisation Access<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Individual organisation access entries can be enabled or disabled independently. This allows administrators to revoke access to one branch without affecting other org mappings or roles.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Open the Org Access tab for the user.<\/li>\n\n\n\n<li>Locate the organisation entry to modify.<\/li>\n\n\n\n<li>Uncheck Active to remove access to that organisation.<\/li>\n\n\n\n<li>Check Active to restore access.<\/li>\n\n\n\n<li>Save the record using the disk icon or F10.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Step 8: Activate or Deactivate a User<\/strong><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The Active checkbox on the user header controls whether the user can log in to iDempiere. Deactivating a user immediately blocks all login attempts while preserving all transaction history and audit records.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>To deactivate: Open the user record, uncheck Active, and save.<\/li>\n\n\n\n<li>To reactivate: Open the user record, check Active, and save.<\/li>\n\n\n\n<li>Deactivated users appear in search results when the Active filter is set to No or All.<\/li>\n\n\n\n<li>Never delete user records. Deactivate instead to maintain historical audit trails.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Business Flow Overview<\/strong><\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Administrator creates a user record with a name, login, and password, establishing the user account in iDempiere.<\/li>\n\n\n\n<li>Roles are assigned in the <strong>Roles<\/strong> tab, granting access to authorized windows, processes, and functions.<\/li>\n\n\n\n<li>Organisation access is configured in the <strong>Org Access<\/strong> tab, allowing the user to view and process transactions for specific branches.<\/li>\n\n\n\n<li>The user logs in using the configured credentials, and iDempiere loads the default role and organisation.<\/li>\n\n\n\n<li>The user performs business transactions such as sales, inventory, and financial operations, which are recorded under the user&#8217;s account.<\/li>\n\n\n\n<li>Reports, audit logs, and transaction records reference the user ID, ensuring accountability and maintaining an audit trail for compliance.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Common Issues and Resolutions<\/strong><\/h2>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><td><strong>Issue<\/strong><\/td><td><strong>Cause<\/strong><\/td><td><strong>Resolution<\/strong><\/td><\/tr><\/thead><tbody><tr><td>User cannot log in after creation.<\/td><td>Active checkbox is unchecked on the user record.<\/td><td>Open the user record, check Active, and save.<\/td><\/tr><tr><td>User has no organisations available after login.<\/td><td>No org access entries are configured or all are inactive.<\/td><td>Open the Org Access tab, add or re-enable the required organisation entries.<\/td><\/tr><tr><td>User cannot see a specific window or menu item.<\/td><td>The assigned role does not include access to that window.<\/td><td>Review role permissions in the Role Window and add the required window access.<\/td><\/tr><tr><td>User sees data from the wrong branch.<\/td><td>Default organisation is set incorrectly on the user record.<\/td><td>Edit the user record and set the correct Default Organisation.<\/td><\/tr><tr><td>Role assigned but access not visible.<\/td><td>Role change has not taken effect \u2014 user is still in session.<\/td><td>Ask the user to log out and log back in to load the new role.<\/td><\/tr><tr><td>Cannot delete a user record.<\/td><td>iDempiere prevents deletion of users with transaction history.<\/td><td>Deactivate the user by unchecking Active instead of deleting.<\/td><\/tr><tr><td>Org Access tab shows no entries.<\/td><td>User was created but org mapping was not configured.<\/td><td>Navigate to the Org Access tab and add the required organisation with Active checked.<\/td><\/tr><tr><td>User role is present but not working.<\/td><td>The role line in the Roles tab has Active unchecked.<\/td><td>Open the Roles tab, find the role, and check Active.<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Best Practices<\/strong><\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Assign only the roles that are required for each user&#8217;s job function.<\/li>\n\n\n\n<li>Review user access quarterly, especially for staff who have changed roles or branches.<\/li>\n\n\n\n<li>Deactivate users when they leave the organisation. Never delete user records.<\/li>\n\n\n\n<li>Set a descriptive value in the Description field so future administrators can identify the user&#8217;s role and location.<\/li>\n\n\n\n<li>Disable individual roles or org access entries before deactivating the full user, to create an audit-friendly sequence.<\/li>\n\n\n\n<li>Keep role assignments minimal for POS and warehouse users to reduce the risk of unauthorised access.<\/li>\n\n\n\n<li>Always test user login and access after configuration to confirm roles and org access are working as expected.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Next Steps<\/strong><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">After completing User Window configuration in iDempiere, proceed with:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Role Window \u2014 Configure permissions and access levels for each role.<\/li>\n\n\n\n<li>Organisation Window \u2014 Review and maintain branch\/store organisation records.<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Learn how to configure the User Window in iDempiere for retail \u2014 create users, assign roles, map org access, and [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[67,68],"tags":[],"class_list":["post-18798","post","type-post","status-publish","format-standard","hentry","category-retail","category-masters"],"acf":[],"_links":{"self":[{"href":"https:\/\/tenthplanet.in\/idempiere\/wp-json\/wp\/v2\/posts\/18798","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/tenthplanet.in\/idempiere\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/tenthplanet.in\/idempiere\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/tenthplanet.in\/idempiere\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/tenthplanet.in\/idempiere\/wp-json\/wp\/v2\/comments?post=18798"}],"version-history":[{"count":7,"href":"https:\/\/tenthplanet.in\/idempiere\/wp-json\/wp\/v2\/posts\/18798\/revisions"}],"predecessor-version":[{"id":22142,"href":"https:\/\/tenthplanet.in\/idempiere\/wp-json\/wp\/v2\/posts\/18798\/revisions\/22142"}],"wp:attachment":[{"href":"https:\/\/tenthplanet.in\/idempiere\/wp-json\/wp\/v2\/media?parent=18798"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/tenthplanet.in\/idempiere\/wp-json\/wp\/v2\/categories?post=18798"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/tenthplanet.in\/idempiere\/wp-json\/wp\/v2\/tags?post=18798"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}