On this tab, you can set up the customer’s self-care access – define their login credentials, language, time zone, and date formats, assign available self-care roles, and create individual logins with role-based permissions for the customer’s employees.
Information
Login
The customer self-care interface login.
After you defined the credentials, you can log in to the self-care interface on behalf of the customer. Click Login
to access it in one of the modes:
- Log in using the assigned role – this mode appears only if you defined a new access role for the customer. You log in to the self-care with the same permissions that the customer currently has. This comes useful if you need to check the customer’s access level.
- Log in using the default role – you can log in to the self-care interface with the default access role even if the customer now has a different role assigned. This may be useful for troubleshooting or if you assist the customer with their configuration.
The administrator can automatically log in to any custom self-care portal with just a single click right from the PortaBilling web interface. There is no need to contact the customer for the portal password or to store it with the portal URL for future use. This saves troubleshooting time and enables the administrator to assist customers faster. The administrator can see all custom self-care portals that are available for a specific customer role by clicking on the arrow
of the login button. The administrator can log in either with a customer role or with the full access option.
To configure access to the custom self-care portals, refer to the Control what custom portal functionality is visible according to user permissions chapter.
Password
The customer self-care interface password. Define it manually or Generate password
to generate a random, hard-to-guess password.
To show or hide the password, click Show password or Hide password
.
Two-factor authentication (2FA)
You can enable 2FA for the customer, so they will be able to log in to their self-care interface only after entering a one-time password (OTP) in addition to their login and regular password. The OTP is generated by a 2FA application installed on the user’s smartphone, e.g., Google Authenticator.
Select one of the following options in the dropdown list:
- As defined by the customer class – the option configured for the customer class is used.
- Yes – select this option to enable 2FA.
- No – select this option to disable 2FA.
If a user loses access to the 2FA application, click Reset 2FA key.
Allow access only from trusted IP addresses
This ensures that the customer accesses the self-care interface only from physical locations that you define. For example, you can specify IP addresses that belong to your network. If the customer tries to log in from outside your network, PortaBilling denies that access and the customer cannot log in.
Use these formats to permit access from specific IP addresses or networks:
- A single IP address: 10.10.10.1
- A network in IP prefix (slash) notation: 192.168.192.0/24
- An IP address and a netmask: 192.168.192.0/255.255.255.0
You can enter multiple definitions, with one starting on a new line and ending with a semicolon.
API token access
Use API tokens to authenticate customer applications (e.g., CRM systems, switchboard apps) that are integrated with PortaBilling via the API. The application then uses the combination of the API token and login to establish the API session.
Role
The access role assigned to this customer. It contains the set of permissions to access self-care components: tabs, features, etc. Each customer is created with a default role. After you create a new role on the Roles panel, select a new role for the customer from the list here.
Time zone
Set the time zone in which to display the date and time values on the customer self-care interface.
Web interface language
Choose a desired language for the customer self-care interface.
Output format
Choose an output date and time format for the customer self-care interface.
Input format
Choose an input date and time format for the customer self-care interface.
Allowed roles
You can add the list of roles that are allowed for customer individuals (employees with individual credentials and role-based permissions to access the customer self-care portal).
To add a role, click Add and select the needed role in the dropdown list. You can select only a role that was previously created with the Customer self-care role type (My company > Access control > Roles > Add a role with the needed permissions). See more details here.
To remove a role from the list, click Remove
. Note that you can only remove the roles that are not yet being used by any individual.
Customer individuals
You can provide your customers’ employees with individual credentials and role-based permissions to access the customer self-care portal.
To add a customer individual, click + Individual and fill in the details.
For each customer individual, the following information is displayed:
Actions
Click Edit to change the individual’s details.
Click Delete
to delete the individual.
Click Sign in to sign in to the customer portal on behalf of the customer individual.
Login
This is the individual’s login to access the customer portal.
Role
This is the individual’s role to access the customer portal.

