# Devolutions documentation

Need help? Here is the complete coverage for all Devolutions products, add-ons, and tools.

<button type="button" class="button primary" data-action="ask" data-icon="gitbook-assistant">Ask a question...</button>

## Remote access and connection management

<table data-view="cards"><thead><tr><th></th><th data-hidden data-card-target data-type="content-ref"></th><th data-hidden data-card-cover data-type="image">Cover image</th><th data-hidden data-card-cover-dark data-type="image">Cover image (dark)</th></tr></thead><tbody><tr><td>The best remote connection manager in the industry</td><td><a href="/spaces/Yn53bTzLMEHrE9eQocMn/pages/u9vuwl2ecRgibIA92z6Q">/spaces/Yn53bTzLMEHrE9eQocMn/pages/u9vuwl2ecRgibIA92z6Q</a></td><td data-object-fit="contain"><a href="/files/4wJ8mFBovZ5KRNpnVloV">/files/4wJ8mFBovZ5KRNpnVloV</a></td><td data-object-fit="contain"><a href="/files/DBelooTkZ8I2zRVlLabL">/files/DBelooTkZ8I2zRVlLabL</a></td></tr><tr><td>All your passwords and work credentials in one place</td><td><a href="/spaces/TQDgGNPEuBMxk9HtlaVW/pages/kVmoVd3iV7svHERY20YG">/spaces/TQDgGNPEuBMxk9HtlaVW/pages/kVmoVd3iV7svHERY20YG</a></td><td data-object-fit="contain"><a href="/files/9hEhvPya5h5hTBuKpJu9">/files/9hEhvPya5h5hTBuKpJu9</a></td><td data-object-fit="contain"><a href="/files/QmAeh0tZ4iKR00CIIYVz">/files/QmAeh0tZ4iKR00CIIYVz</a></td></tr><tr><td>Secure remote access — no VPN required</td><td><a href="/spaces/jzRy2HAXK8qgJafbcosL/pages/v8b2EJKBSTFV4Vpnfffo">/spaces/jzRy2HAXK8qgJafbcosL/pages/v8b2EJKBSTFV4Vpnfffo</a></td><td data-object-fit="contain"><a href="/files/fpkHWO83RWd4fgEypnCr">/files/fpkHWO83RWd4fgEypnCr</a></td><td data-object-fit="contain"><a href="/files/ymhtkzvLKC4YwUbpS0pi">/files/ymhtkzvLKC4YwUbpS0pi</a></td></tr><tr><td>Remote connection launching tool</td><td><a href="/spaces/ud74sZIlWMpbYvf9tjkN/pages/YHMxNLWixrdo8YaLi5Kg">/spaces/ud74sZIlWMpbYvf9tjkN/pages/YHMxNLWixrdo8YaLi5Kg</a></td><td data-object-fit="contain"><a href="/files/XnEGE35jxhlxK7LRxqR4">/files/XnEGE35jxhlxK7LRxqR4</a></td><td data-object-fit="contain"><a href="/files/bAvYtmrAsefzA9KmgzxH">/files/bAvYtmrAsefzA9KmgzxH</a></td></tr></tbody></table>

## Workspaces

<table data-view="cards"><thead><tr><th></th><th data-hidden data-card-target data-type="content-ref"></th><th data-hidden data-card-cover data-type="image">Cover image</th><th data-hidden data-card-cover-dark data-type="image">Cover image (dark)</th></tr></thead><tbody><tr><td>Cloud-hosted workspace</td><td><a href="/spaces/XzwnDuD03jfVrUuOf8v0/pages/f2zSP3cLDT8BKrLn4O21">/spaces/XzwnDuD03jfVrUuOf8v0/pages/f2zSP3cLDT8BKrLn4O21</a></td><td data-object-fit="contain"><a href="/files/lqst166vVzsvj0vLOGh8">/files/lqst166vVzsvj0vLOGh8</a></td><td data-object-fit="contain"><a href="/files/kuqWLg3Lff68rPJrX0t6">/files/kuqWLg3Lff68rPJrX0t6</a></td></tr><tr><td>Self-hosted workspace</td><td><a href="/spaces/sIoLRCUpW1TDn2Emy5oo/pages/JQg6U7LeYOvUTKfAY99q">/spaces/sIoLRCUpW1TDn2Emy5oo/pages/JQg6U7LeYOvUTKfAY99q</a></td><td data-object-fit="contain"><a href="/files/6ds5Uqnu0lPsSAnluje2">/files/6ds5Uqnu0lPsSAnluje2</a></td><td data-object-fit="contain"><a href="/files/PVstQfkklbiuDV4PIU5j">/files/PVstQfkklbiuDV4PIU5j</a></td></tr></tbody></table>

## Privileged access management

<table data-view="cards"><thead><tr><th></th><th data-hidden data-card-target data-type="content-ref"></th><th data-hidden data-card-cover data-type="image">Cover image</th><th data-hidden data-card-cover-dark data-type="image">Cover image (dark)</th></tr></thead><tbody><tr><td>Secure, rotate, and audit every privileged account across your infrastructure</td><td><a href="/spaces/OgfA0kmpPWzOzRbtUiH4/pages/2PUxnYxs5Kgr35P5RiwH">/spaces/OgfA0kmpPWzOzRbtUiH4/pages/2PUxnYxs5Kgr35P5RiwH</a></td><td data-object-fit="contain"><a href="/files/Uz2X7qhtTuzrUewRDTrV">/files/Uz2X7qhtTuzrUewRDTrV</a></td><td data-object-fit="contain"><a href="/files/YRBxnRe2iVX3r0VGVE9j">/files/YRBxnRe2iVX3r0VGVE9j</a></td></tr></tbody></table>

## Scripting, automation, tools

<table data-view="cards"><thead><tr><th></th><th data-hidden data-card-target data-type="content-ref"></th><th data-hidden data-card-cover data-type="image">Cover image</th><th data-hidden data-card-cover-dark data-type="image">Cover image (dark)</th></tr></thead><tbody><tr><td>PowerShell-based automation and administration interface</td><td><a href="/spaces/knyjHfiQV0gwDZiJkpIv/pages/ZMcMnu5yx0SZINL5YBQl">/spaces/knyjHfiQV0gwDZiJkpIv/pages/ZMcMnu5yx0SZINL5YBQl</a></td><td data-object-fit="contain"><a href="/files/i2lYsi6oSE6gUKoDud8l">/files/i2lYsi6oSE6gUKoDud8l</a></td><td data-object-fit="contain"><a href="/files/RG8bpHSslIRprzo6b6PT">/files/RG8bpHSslIRprzo6b6PT</a></td></tr><tr><td>Automate remote management with dashboards and APIs</td><td><a href="/spaces/Aje1UFQFSPx2kH2ueeCf">/spaces/Aje1UFQFSPx2kH2ueeCf</a></td><td data-object-fit="contain"><a href="/files/ivDQBDwpS7wzwZSvdJOI">/files/ivDQBDwpS7wzwZSvdJOI</a></td><td data-object-fit="contain"><a href="/files/rjYf6z9p1aFsy1B54Wxc">/files/rjYf6z9p1aFsy1B54Wxc</a></td></tr><tr><td>System service to control privileged operations</td><td><a href="/spaces/MI64cUMya66wrRqT5GbY/pages/RjCjCaJe5sO4OccSkjjR">/spaces/MI64cUMya66wrRqT5GbY/pages/RjCjCaJe5sO4OccSkjjR</a></td><td data-object-fit="contain"><a href="/files/ERcURBYO5nT405QTdicn">/files/ERcURBYO5nT405QTdicn</a></td><td data-object-fit="contain"><a href="/files/KuWL5jfFQRDv4Z6snezq">/files/KuWL5jfFQRDv4Z6snezq</a></td></tr><tr><td>Sharing secrets made quick, secure, and simple</td><td><a href="/spaces/UOdThDhl1MvqhGFhpRtt/pages/BOJy28KIvxIDQemaIaIC">/spaces/UOdThDhl1MvqhGFhpRtt/pages/BOJy28KIvxIDQemaIaIC</a></td><td data-object-fit="contain"><a href="/files/wJdkgFuGXilJ4dAQE7Dp">/files/wJdkgFuGXilJ4dAQE7Dp</a></td><td data-object-fit="contain"><a href="/files/OONm0JNnJcp1Rx2qdZKk">/files/OONm0JNnJcp1Rx2qdZKk</a></td></tr><tr><td>Manage your Devolutions Account, subscriptions, and workspaces</td><td><a href="/spaces/VFwZPI64OIIBl88lfVqW/pages/nrgTSTsIzM5wi7DTbEpk">/spaces/VFwZPI64OIIBl88lfVqW/pages/nrgTSTsIzM5wi7DTbEpk</a></td><td data-object-fit="contain"><a href="/files/omTRrMKKWZYU3eJttQX8">/files/omTRrMKKWZYU3eJttQX8</a></td><td data-object-fit="contain"><a href="/files/aJ37G3OQ2FSa1duVSOii">/files/aJ37G3OQ2FSa1duVSOii</a></td></tr></tbody></table>

####

{% columns %}
{% column width="25%" %}

<div align="center"><figure><picture><source srcset="/files/DNiwiB9fL9YBBpr87Sfx" media="(prefers-color-scheme: dark)"><img src="/files/o86c4cS5ppUr1u9I0Gu0" alt=""></picture><figcaption></figcaption></figure></div>
{% endcolumn %}

{% column width="75%" valign="middle" %}

## Master the Devolutions platform

Build your expertise with free courses, expert-led training, and guided learning paths for Devolutions products and IT best practices.

<a href="https://academy.devolutions.net/" class="button primary" data-icon="book-open">Start learning</a> <a href="https://login.devolutions.com/op/register" class="button secondary" data-icon="circle-user">Create a free Devolutions Account</a>
{% endcolumn %}
{% endcolumns %}

<h4 align="center"></h4>

<h2 align="center">Join the Devolutions community</h2>

<p align="center">Explore discussions, product updates, expert tips, and community-driven knowledge.</p>

<table data-card-size="large" data-view="cards"><thead><tr><th></th><th></th><th></th><th data-hidden data-card-cover data-type="files"></th><th data-hidden data-card-target data-type="content-ref"></th></tr></thead><tbody><tr><td><h4><i class="fa-messages">:messages:</i> <strong>Devolutions Forum</strong></h4></td><td>Connect with the Devolutions team and fellow IT professionals to ask questions, share knowledge, and find solutions.</td><td><a href="https://forum.devolutions.net/" class="button primary">Join the discussion</a></td><td></td><td><a href="https://www.gitbook.com/">https://www.gitbook.com/</a></td></tr><tr><td><h4><i class="fa-newspaper">:newspaper:</i> <strong>Devolutions Blog</strong></h4></td><td>Explore product updates, expert insights, tutorials, and cybersecurity news to stay informed and get more from your Devolutions solutions.</td><td><a href="https://devolutions.net/blog/" class="button primary">Browse articles</a></td><td></td><td><a href="https://www.gitbook.com/">https://www.gitbook.com/</a></td></tr></tbody></table>

##


# Overview


# Devolutions Remote Desktop Manager

Devolutions Remote Desktop Manager (RDM) is an application that integrates a comprehensive set of tools and managers to meet the needs of any IT team. It is designed to centralize remote connection technologies, credentials, and secure access to these resources. Most connections are established using either an external library or third-party software.

Remote Desktop Manager is compatible with over 200 relevant tools and technologies, including Apple Remote Desktop, Citrix, Dameware, FTP, Hyper-V, LogMeIn, Radmin, RDP (Microsoft Remote Desktop), Remote Desktop Services, SSH Port Forward, SSH Shell, TeamViewer, Telnet, VMware, VNC, SCP, X Windows, and more!

{% tabs %}
{% tab title="Windows" %}
{% embed url="<https://youtu.be/i9EwBPnYQ6I>" %}

### The Remote Desktop Manager platform

Remote Desktop Manager is available on **Windows**, **macOS**, **Linux**, **iOS**, and **Android**.

The solution is offered in **two editions**, regardless of the operating system:

<table><thead><tr><th width="82.60003662109375"></th><th></th></tr></thead><tbody><tr><td><strong>Free</strong></td><td>For individual users who don't need to share remote connections and privileged passwords with other IT professionals.</td></tr><tr><td><strong>Team</strong></td><td>For MSPs, IT professionals &#x26; helpdesk technicians who need to share remote connections and privileged passwords with other team members. Purchasing a Team license grants the right to use Remote Desktop Manager on all available platforms.</td></tr></tbody></table>
{% endtab %}

{% tab title="macOS" %}

### The Remote Desktop Manager platform

Remote Desktop Manager is available on **Windows**, **macOS**, **Linux**, **iOS**, and **Android**.

The solution is offered in **two editions**, regardless of the operating system:

<table><thead><tr><th width="78.60003662109375"></th><th></th></tr></thead><tbody><tr><td><strong>Free</strong></td><td>For individual users who don't need to share remote connections and privileged passwords with other IT professionals.</td></tr><tr><td><strong>Team</strong></td><td>For MSPs, IT professionals &#x26; helpdesk technicians who need to share remote connections and privileged passwords with other team members. Purchasing a Team license grants the right to use Remote Desktop Manager on all available platforms.</td></tr></tbody></table>
{% endtab %}

{% tab title="Linux" %}

### The Remote Desktop Manager platform

Remote Desktop Manager is available on **Windows**, **macOS**, **Linux**, **iOS**, and **Android**.

The solution is offered in **two editions**, regardless of the operating system:

<table><thead><tr><th width="80.20001220703125"></th><th></th></tr></thead><tbody><tr><td><strong>Free</strong></td><td>For individual users who don't need to share remote connections and privileged passwords with other IT professionals.</td></tr><tr><td><strong>Team</strong></td><td>For MSPs, IT professionals &#x26; helpdesk technicians who need to share remote connections and privileged passwords with other team members. Purchasing a Team license grants the right to use Remote Desktop Manager on all available platforms.</td></tr></tbody></table>
{% endtab %}

{% tab title="iOS" %}
{% embed url="<https://youtu.be/_URhmfTOJKY>" %}

### The Remote Desktop Manager platform

Remote Desktop Manager is available on **Windows**, **macOS**, **Linux**, **iOS**, and **Android**.

The solution is offered in **two editions**, regardless of the operating system:

<table><thead><tr><th width="78.60003662109375"></th><th></th></tr></thead><tbody><tr><td><strong>Free</strong></td><td>For individual users who don't need to share remote connections and privileged passwords with other IT professionals.</td></tr><tr><td><strong>Team</strong></td><td>For MSPs, IT professionals &#x26; helpdesk technicians who need to share remote connections and privileged passwords with other team members. Purchasing a Team license grants the right to use Remote Desktop Manager on all available platforms.</td></tr></tbody></table>
{% endtab %}

{% tab title="Android" %}
{% embed url="<https://youtu.be/Ber7kjcU9WA>" %}

### The Remote Desktop Manager platform

Remote Desktop Manager is available on **Windows**, **macOS**, **Linux**, **iOS**, and **Android**.

The solution is offered in **two editions**, regardless of the operating system:

<table><thead><tr><th width="80.99993896484375"></th><th></th></tr></thead><tbody><tr><td><strong>Free</strong></td><td>For individual users who don't need to share remote connections and privileged passwords with other IT professionals.</td></tr><tr><td><strong>Team</strong></td><td>For MSPs, IT professionals &#x26; helpdesk technicians who need to share remote connections and privileged passwords with other team members. Purchasing a Team license grants the right to use Remote Desktop Manager on all available platforms.</td></tr></tbody></table>
{% endtab %}
{% endtabs %}

#### See also

* [Remote Desktop Manager FAQ: Overview edition](https://blog.devolutions.net/2025/02/remote-desktop-manager-faq-overview-edition/)
* [Devolutions Academy – Introducing Remote Desktop Manager Free: the solo IT pro's toolkit](https://academy.devolutions.net/student/activity/3266573)


# Compare editions

Compare the features between our Free and Team editions of Remote Desktop Manager.

### Remote connection management

| Feature                                                       | Description                                                                                                                                                    | Solo | Team |
| ------------------------------------------------------------- | -------------------------------------------------------------------------------------------------------------------------------------------------------------- | ---- | ---- |
| **Launch and authenticate connections with a single click**   | Launch connections to privileged sessions, remote servers, virtual machines, websites, and applications with a single click using credential injection.        | X    | X    |
| **Integrates with different connection types and add-ons**    | Integrates with the most popular protocols and remote connection types as well as more than 60 add-ons.                                                        | X    | X    |
| **Integrated VPN and VPN Management**                         | Integrated VPN connection management with Microsoft, Cisco, SonicWall and IPsecVPN; also supports VPN route management.                                        | X    | X    |
| **Export sessions and entries**                               | Easily export information in an XML file.                                                                                                                      | X    | X    |
| **Import from other applications and from different sources** | Import sessions from other applications like Dameware, KeePass, RDCMan, and more; import information from a CSV file or directly from Active Directory.        | X    | X    |
| **Macro support and automated macro**                         | Supports custom variables (host, username, domain, password) and Windows environment variables; also supports automated typing macro on connect or disconnect. | X    | X    |
| **Automated macro**                                           | Automated typing macro on connect or disconnect.                                                                                                               | X    | X    |

### Password management

| Feature                                                         | Description                                                                                                                                                                        | Solo | Team |
| --------------------------------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ---- | ---- |
| **Centralized password vault**                                  | Using U.S. Federal Government-approved encryption, RDM protects your privileged accounts in a centralized vault.                                                                   | X    | X    |
| **Securely store sensitive information**                        | RDM stores sensitive information, such as bank account details, email addresses, passport details, credit card numbers, and alarm codes, in a highly secure and centralized vault. | X    | X    |
| **Password generator and integrated password management tools** | Generate strong random passwords with an integrated password analyzer and password history reports.                                                                                | X    | X    |
| **Password Inheritance**                                        | Set your password on a parent folder for the children folders to inherit it. The latter enables entries to inherit credentials from a parent folder.                               | X    | X    |
| **Document manager**                                            | Securely stores all your PDF, Word, Excel, Visio and image documents directly in the database for easy sharing.                                                                    | X    | X    |
| **Integrated user vault**                                       | Allows each user to have their own user vault only they can access.                                                                                                                | X    | X    |
| **Integrates with existing password managers**                  | Remote Desktop Manager integrates with 1Password, Dashlane, KeePass, LastPass, and more.                                                                                           |      | X    |
| **Import passwords**                                            | Directly imports credentials from other applications, including 1Password, KeePass and LastPass.                                                                                   | X    | X    |

### Secure access to critical assets

| Feature                        | Description                                                                                                                                                                            | Solo | Team |
| ------------------------------ | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ---- | ---- |
| **Account brokering**          | Directly inject credentials into endpoints like servers, workstations, and applications while Devolutions Devolutions Password Manager browser extension offers autologin to websites. | X    | X    |
| **Web browser integration**    | The browser extension integrates with Internet Explorer, Firefox, Google Chrome and Opera.                                                                                             | X    | X    |
| **Encrypted passwords**        | All passwords are encrypted by default.                                                                                                                                                | X    | X    |
| **Double encryption**          | Database double encryption with personalized passphrase or certificate.                                                                                                                |      | X    |
| **Role-based access control**  | The role-based access control enables the creation of a granular protection system, giving the flexibility to manage more permissions.                                                 |      | X    |
| **Multifactor authentication** | Add a layer of protection to your workspace using multifactor authentication tools like Duo, Yubikey, or any TOTP application.                                                         | X    | X    |
| **Version tracking**           | Keeps track of all modifications, allowing you to view the change history and easily roll back any unwanted change or deletion.                                                        | X    | X    |

### Cross-platform

| Feature                    | Description                                                                                                               | Solo | Team |
| -------------------------- | ------------------------------------------------------------------------------------------------------------------------- | ---- | ---- |
| **Multi-platform clients** | Available for Windows, macOS, Linux, Android, and iOS platforms.                                                          | X    | X    |
| **Mobile remote sessions** | While on mobile devices, open remote sessions to endpoints to quickly fix issues in the field.                            | X    | X    |
| **Native clients**         | Clients are built native to their operating systems for performance and security.                                         | X    | X    |
| **Multiple workspaces**    | Connect to more than a single workspace while on the go.                                                                  | X    | X    |
| **Mobile tools**           | Conveniently built-in tools such as ping, SSH private key generators, and file managers are available for mobile clients. | X    | X    |

### Ease of management

| Feature                                | Description                                                                                                                                           | Solo | Team |
| -------------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------------------------- | ---- | ---- |
| **Mobile access**                      | Retrieve passwords and approve requests wherever you are using your smartphone.                                                                       | X    | X    |
| **Integrated virtualization consoles** | Offers a quick overview of a machine's state using integrated virtualization consoles, such as Hyper-V, Terminal Server, Citrix XenServer and VMware. | X    | X    |
| **Integrated cloud consoles**          | Offers integrated consoles, such as Active Directory, VMware, Hyper-V, Amazon EC2 and Microsoft Azure.                                                | X    | X    |
| **Offline mode**                       | Access your database even when there is no Internet connectivity.                                                                                     | X    | X    |
| **Macro/Script tool support**          | Supports any command line tool, keyboard macros, PowerShell, WASP PowerShell and more.                                                                | X    | X    |
| **PowerShell**                         | Modify or import entries with PowerShell; open any connection directly from a script.                                                                 | X    | X    |

### Audits and reports

| Feature                         | Description                                                                                         | Solo                    | Team |
| ------------------------------- | --------------------------------------------------------------------------------------------------- | ----------------------- | ---- |
| **Audit trail**                 | Capture all events surrounding privileged account operations, including login attempts and history. |                         | X    |
| **Password usage audit trail**  | Clear view of password access and audit traces.                                                     |                         | X    |
| **Activity log**                | Generate exhaustive access logs to keep track of privileged user activity.                          | Local machine user only | X    |
| **Real-time connection status** | Provide a clear view of which users are currently connected to servers within the same vault.       |                         | X    |
| **Connection warning**          | Optional connection warning for already connected users.                                            |                         | X    |
| **Export reports**              | Export your report as a CSV file or execute and export your report through a command line.          | X                       | X    |
| **Failed login report**         | Generate an exhaustive report of failed login attempts and history.                                 |                         | X    |
| **Entry notifications**         | Receive notifications on expired and expiring entries and license events.                           |                         | X    |

#### See also

* [Devolutions Blog - Why Remote Desktop Manager Free (Solo) is a power tool for individual IT pros](https://blog.devolutions.net/2025/06/why-remote-desktop-manager-free-solo-is-a-power-tool-for-individual-it-pros/)


# Security

{% tabs %}
{% tab title="Windows" %}
All passwords stored in the workspaces are encrypted using a strong encryption algorithm, to the extent that if a user attempts to access the data directly in the database, it will be considered unreadable.

If you choose to store passwords locally, Remote Desktop Manager will use the same mechanism used by mstsc.exe (Remote Desktop Manager client), which stores the passwords in the Windows Credential Manager. It must be noted that the password will not be able to be viewed due to being encrypted by Windows. For obvious reasons, this choice also means that credentials stored in this fashion are not shared.

### Encryption algorithm

Our application uses the XChaCha20Poly1305 encryption algorithm to protect sensitive data in the database. Consult the [Devolutions cryptographic library](https://github.com/Devolutions/devolutions-crypto) on GitHub for more details.

{% hint style="info" %}
The local Remote Desktop Manager data is encrypted using the Advanced Encryption Standard (AES) for computers running in FIPS mode.
{% endhint %}

### Security tips

Encryption of data while in transit is offered natively by our cloud services. Whenever you decide to use an on-premises solution, encryption of data in transit must be implemented by using the tools involving your chosen technologies. Most users with security concerns choose [Devolutions Server or Devolutions Cloud workspaces](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/). Follow instructions specific to the chosen solution.

The encryption key is built into the application and is therefore the same for all copies of the software in circulation. It is imperative that you follow our recommended steps and apply a [security provider](https://docs.devolutions.net/rdm/commands/administration/security-providers/) to encrypt not only the passwords, but also all connection data stored in the workspace. This provides protection for your data at rest, using a key under your exclusive control.

We recommend you follow these steps to ensure data security:

* Use a [Devolutions Server or Devolutions Cloud workspace](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/) and grant user access by assigning permissions.
* Use encrypted communication with the database when available.
* Use the [system settings](https://docs.devolutions.net/rdm/commands/administration/system-settings/vault-management/security/) to control settings impacting security.
* Use the [security provider](https://docs.devolutions.net/rdm/commands/administration/security-providers/) to encrypt entries completely instead of just the password.
* When using the offline mode, add your own password for an additional layer of protection to the local cache. Go to ***File – Settings – Security***.
* Require a password to launch the application and even require multifactor authentication. Go to ***File – Settings – Security***.
* If your workspace supports it, choose not to save the password in the workspace, which will prompt for the credentials on the first connection.
* Use our [group policies](https://docs.devolutions.net/rdm/kb/how-to-articles/group-policies/) to set up the system.
  {% endtab %}

{% tab title="macOS" %}
All passwords stored in the workspaces are encrypted using a strong encryption algorithm, to the extent that if a user attempts to access the data directly in the database, it will be considered unreadable.

### Encryption algorithm

The local Remote Desktop Manager data is encrypted using the Advanced Encryption Standard (AES) for computers running in FIPS mode.

### Security tips

Encryption of data while in transit is offered natively by our cloud services. Whenever you decide to use an on-premises solution, encryption of data in transit must be implemented by using the tools involving your chosen technologies. Most users with security concerns choose [Devolutions Server or Devolutions Cloud workspaces](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/). Follow instructions specific to the chosen solution.

The encryption key is built into the application and is therefore the same for all copies of the software in circulation. It is imperative that you follow our recommended steps and apply a [security provider](https://docs.devolutions.net/rdm/commands/administration/security-providers/) to encrypt not only the passwords, but also all connection data stored in the workspace. This provides protection for your data at rest, using a key under your exclusive control.

We recommend you follow these steps to ensure data security:

* Use a [Devolutions Server or Devolutions Cloud workspace](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/) and grant user access by assigning permissions.
* Use encrypted communication with the database when available.
* Use the [system settings](https://docs.devolutions.net/rdm/commands/administration/system-settings/vault-management/security/) to control settings impacting security.
* Use the [security provider](https://docs.devolutions.net/rdm/commands/administration/security-providers/) to encrypt entries completely instead of just the password.
* When using the offline mode, add your own password for an additional layer of protection to the local cache. Go to ***File – Settings – Security***.
* Require a password to launch the application and even require multifactor authentication. Go to ***File – Settings – Security***.
* If your workspace supports it, choose not to save the password in the workspace, which will prompt for the credentials on the first connection.
  {% endtab %}
  {% endtabs %}

#### See also

* [Security & Compliance](https://devolutions.net/security/)
* [Devolutions Academy – Breaking down common scenarios: remote access for field work](https://academy.devolutions.net/student/activity/3380820)
* [Devolutions Academy – Enhancing Security](https://academy.devolutions.net/student/path/1925316/activity/2668008)
* [Devolutions Academy – Enhancing Security (Remote Desktop Manager free)](https://academy.devolutions.net/student/page/3266658-enhancing-security?sid=5c703361-7b86-47ce-a9ca-e274c841ef02\&sid_i=1)
* [Devolutions Academy – Introducing Remote Desktop Manager Free: the IT pro's toolkit](https://academy.devolutions.net/student/activity/3266573)


# System requirements

Remote Desktop Manager requires the following prior to installation.

{% tabs %}
{% tab title="Windows" %}

### Minimum system requirements

#### Windows Desktop

* Windows 11
  * Version 22H2
* Windows 10
  * Version 20H2, 21H1, and 21H2

#### Windows Server

* Windows Server 2025
* Windows Server 2022
* Windows Server
  * Version 20H2
* Windows Server 2019
* 2016
  * Version 1607

1 GHz or faster processor 4 GB RAM 1024 x 768 screen resolution 500+ MB hard drive space 64-bit operating system

### Minimum software requirements

The following packages must be installed prior to proceeding with the Remote Desktop Manager Windows installation:

* [Microsoft .NET Desktop Runtime 10.0](https://dotnet.microsoft.com/en-us/download/dotnet/10.0). See [supported OS versions](https://github.com/dotnet/core/blob/main/release-notes/10.0/supported-os.md) for more information.
* [Microsoft Edge WebView2 Runtime](https://docs.devolutions.net/rdm/kb/knowledge-base/download-microsoft-edge-chromium/)

{% hint style="info" %}
These installations are managed automatically by our installers. The only situations in which a manual installation of the prerequisite software should be performed are when the ZIP archive is used for deployment or when there is no Internet connection.
{% endhint %}

### Remote Desktop Services and thin client support

Remote Desktop Manager can be installed on [Remote Desktop Services](https://docs.devolutions.net/rdm/installation/client/terminal-services/) and thin client.

### Manual/Portable deployment

Deploying manually using our ZIP file is documented as being a [portable deployment](https://docs.devolutions.net/rdm/installation/client/portable-usb/). In this case, the prerequisites will need to be handled manually as well. See the [minimum software requirements](https://docs.devolutions.net/rdm/overview/system-requirements/#minimum-software-requirements) above for details.
{% endtab %}

{% tab title="macOS" %}

### Minimum system requirements

* Operating system: macOS Sonoma (v. 14)
* Processor: 1 GHz
* RAM: 4 GB
* Screen resolution: 1440 x 900 px
* Hard drive space: 1.5 GB
  {% endtab %}
  {% endtabs %}


# Devolutions platform

Our platform offers multiple products and companion tools to help manage all of the aspects of an IT infrastructure.

{% embed url="<https://youtu.be/-bN0kYGpXrs>" %}

### Remote access and connection management

<table><thead><tr><th width="157">PRODUCT</th><th width="446">DESCRIPTION</th><th>INSTALLATION</th></tr></thead><tbody><tr><td><a href="https://docs.devolutions.net/rdm/overview/what-is-rdm/">Devolutions Remote Desktop Manager (RDM)</a></td><td>Remote Desktop Manager is an application used to manage and centralize remote access technologies, privileged passwords, documents and shared information.</td><td>Windows, macOS, Linux, iOS, Android</td></tr><tr><td><a href="https://docs.devolutions.net/gateway/overview/what-is-gateway/">Devolutions Gateway</a></td><td>Devolutions Gateway provides authorized just-in-time access to resources in segmented networks.</td><td>Windows, Linux</td></tr><tr><td><a href="https://docs.devolutions.net/launcher/overview/devolutions-launcher/">Devolutions Launcher</a></td><td>Devolutions Launcher provides users with a simple method of launching remote sessions, while also giving system administrators full control of whether passwords and sensitive information are divulged or kept secret. All privileged account information is transmitted directly from the password vault into the remote session via Launcher's secure API, keeping with the latest security standards.</td><td>Windows</td></tr><tr><td><a href="https://docs.devolutions.net/password-manager/overview/devolutions-password-manager/">Devolutions Password Manager</a></td><td>Devolutions Password Manager is a desktop and mobile application as well as a browser extension. It bring together Devolutions Cloud and Devolutions Server into a single, centralized location. Devolutions Password Manager simplifies and streamlines access and management in our solutions.</td><td>Windows, macOS, Linux, iOS, Android</td></tr><tr><td><a href="https://docs.devolutions.net/rdm/ribbon-menu-bar/tools/more-tools/rdm-jump-deprecated/">Remote Desktop Manager Agent</a></td><td>The Remote Desktop Manager Agent can run commands on remote hosts, but what is really useful is that it can send commands to multiple hosts at the same time. Since Remote Desktop Manager uses a secure RDP channel to communicate with the Remote Desktop Manager Agent, it can only operate against Windows-based hosts.</td><td>Windows</td></tr><tr><td><a href="https://docs.devolutions.net/resources/devolutions-agent/jump-host/">Remote Desktop Manager Jump</a></td><td>Remote Desktop Manager Jump connects to a remote host, often called a Jump Box, Service Host, or a Bastion Server, which in turn connects to other hosts. Remote Desktop Manager Jump is actually an RDP in an RDP.</td><td>Windows</td></tr></tbody></table>

### Workspaces

<table><thead><tr><th>PRODUCT</th><th width="459">DESCRIPTION</th><th>INSTALLATION</th></tr></thead><tbody><tr><td><a href="https://docs.devolutions.net/server/overview/what-is-server/">Devolutions Server</a></td><td>Devolutions Server is a full-featured shared account and password management solution with add-on privileged access components. It deploys rapidly, implements easily, and delivers the core features of a comprehensive PAM solution. Devolutions Server is designed to meet the ever-expanding security requirements of SMBs, while remaining very affordable.</td><td>Windows, Linux</td></tr><tr><td><a href="https://docs.devolutions.net/cloud/overview/devolutions-cloud/">Devolutions Cloud</a></td><td>Devolutions Cloud is a secure and cloud-based password manager for teams. It empowers your organization to easily and securely vault and manage business-user passwords, along with other sensitive information, through a user-friendly web interface that can be quickly, easily and securely accessed via any browser.</td><td>Cloud</td></tr></tbody></table>

### Privileged access management

<table><thead><tr><th width="158">PRODUCT</th><th width="459">DESCRIPTION</th><th>INSTALLATION</th></tr></thead><tbody><tr><td><a href="https://docs.devolutions.net/pam/overview/what-is-pam/">Devolutions PAM</a></td><td>Devolutions PAM is a robust, easy-to-deploy, and affordable privileged access management solution that balances productivity and security.</td><td>Windows, macOS</td></tr></tbody></table>

### Scripting, automation, and tools

<table><thead><tr><th>PRODUCT</th><th width="459">DESCRIPTION</th><th>INSTALLATION</th></tr></thead><tbody><tr><td><a href="https://docs.devolutions.net/powershell/overview/what-is-powershell/">Devolutions PowerShell</a></td><td>The Devolutions PowerShell module provides administrators with a suite of cmdlets for managing Remote Desktop Manager, Devolutions Server, and Devolutions Cloud through PowerShell.</td><td>Windows</td></tr><tr><td><a href="https://docs.devolutions.net/send/overview/devolutions-send">Devolutions Send</a></td><td>Devolutions Send features a secure method to generate a link to share secrets instead of using insecure email to send sensitive data. Send a password through in-app secure messaging or create a shareable link to send secrets outside your organization securely.</td><td>Web-based</td></tr><tr><td><a href="https://docs.devolutions.net/portal/overview/what-is-portal/">Devolutions Portal</a></td><td><p>Devolutions Portal provides a centralized platform to manage:</p><ul><li>details and communication preferences.</li><li>Devolutions product and integration licenses, along with billing information.</li><li>access to Devolutions Cloud.</li><li>authentication and security settings.</li></ul></td><td>Web-based</td></tr></tbody></table>


# Getting started

This section guides you through the first steps with Remote Desktop Manager: setting up the application, choosing and configuring a workspace, and getting your credentials organized.

### Installation

Before launching Remote Desktop Manager for the first time, you need to download and install the client for your platform (Windows, macOS, Linux, iOS, or Android), apply a license or start a free trial, and then set up your initial workspace. If you are upgrading an existing database-backed deployment, the installation section also covers database upgrade procedures, the application update process, and uninstallation.

See [Installation](https://docs.devolutions.net/rdm/installation) for the full setup and lifecycle documentation.

### Workspaces

A workspace is the central container for all your entries in Remote Desktop Manager. It can be a local file or a database (local or shared), and you can configure multiple workspaces for all your needs.&#x20;

The Workspaces section covers workspace types, how to create a workspace, caching, import/export, locking, multifactor authentication, and offline mode.

See [Workspaces](https://docs.devolutions.net/rdm/workspaces) for the full documentation.

### Checklists

The checklists provide step-by-step setup guidance tailored to your deployment type.

| Checklists                                                                                                                             | Descriptions                                                                                                                                                  |
| -------------------------------------------------------------------------------------------------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| [Native workspace configuration checklist](https://docs.devolutions.net/rdm/getting-started/checklist-for-native-workspaces)           | Helps administrators install and configure Remote Desktop Manager for solo and team use with our native workspaces: Devolutions Server and Devolutions Cloud. |
| [Local workspace configuration checklist](https://docs.devolutions.net/rdm/getting-started/checklist-for-local-workspaces)             | Covers the essentials for setting up local workspaces such as SQLite.                                                                                         |
| [Alternative workspace configuration checklist](https://docs.devolutions.net/rdm/getting-started/checklist-for-alternative-workspaces) | Guides administrators through the CyberArk, Microsoft Azure SQL, and Microsoft SQL Server workspaces configuration process.                                   |

### Managing credentials

Once your workspace is configured, you will need to understand how Remote Desktop Manager handles credentials. See [Managing credentials](https://docs.devolutions.net/rdm/getting-started/managing-credentials) for guidance on credential types, storage strategies, and best practices.

#### See also

* [Devolutions Academy – Introducing Remote Desktop Manager Free: the solo IT pro's toolkit](https://academy.devolutions.net/student/activity/3266573)


# Installation

This section covers everything needed to install, update, and remove Remote Desktop Manager across all supported platforms.

### Client

Remote Desktop Manager is available on Windows, macOS, Linux, iOS, and Android. The Windows client can be downloaded as a setup file (`.msi` or `.exe`) or as a compressed binary (`.7z` or `.zip`) from the [Devolutions website](https://devolutions.net/remote-desktop-manager/home/download) or the [Microsoft Store](https://apps.microsoft.com/store/detail/devolutions-remote-desktop-manager/XPFCXHF337W98S).

Depending on the downloaded media, either run the setup or extract the files to any folder and launch the executable. For portable or multi-instance deployments, a portable (USB) installation option is also available.

After installing, you can start with a [free trial](https://docs.devolutions.net/resources/getting-started-packages/free-trials/) or register a purchased license. By default, a local SQLite workspace is created, and additional workspaces can be configured at any time.

See [Client](https://docs.devolutions.net/rdm/installation/client) for the full list of download options and detailed setup instructions.

### Database upgrade

Some Remote Desktop Manager releases require changes to the underlying database structure. These upgrades are performed automatically when you open the application, but it is best practice to back up your workspace first. In team environments, you must be the only user connected to the database during the upgrade, and the account performing the update must have administrative privileges (`SYSDBA` or `DB_OWNER`).

See [Database upgrade](https://docs.devolutions.net/rdm/installation/database-upgrade) for the full step-by-step procedure on Windows and macOS.

### Updating Remote Desktop Manager

When a new version is available, Remote Desktop Manager displays an update window with release notes (new features, improvements, fixes, and breaking changes). From that window, you can download and install the update immediately, schedule installation for when the application closes, skip the version, or be reminded later. On Linux, updates are applied manually by downloading the new `.deb` package and installing it via the terminal.

See [Update](https://docs.devolutions.net/rdm/installation/update) for platform-specific instructions and information on automating updates via Microsoft Intune.

### Uninstalling Remote Desktop Manager

See [Uninstall](https://docs.devolutions.net/rdm/installation/uninstall) for instructions on removing Remote Desktop Manager from your system.


# Client

{% tabs %}
{% tab title="Windows" %}
Remote Desktop Manager can be downloaded as setup files or as a binary compressed file (ZIP) via our [Devolutions website](https://devolutions.net/remote-desktop-manager/home/download). It can also be downloaded from the [Microsoft Store](https://apps.microsoft.com/store/detail/devolutions-remote-desktop-manager/XPFCXHF337W98S).

### Installation

Depending on the downloaded media, either run the setup or extract the files from the archive in any folder and launch the executable.

If you wish to use a portable device or run multiple independent copies of the application, please consult [Portable (USB)](https://docs.devolutions.net/rdm/installation/client/portable-usb/).

<table><thead><tr><th width="232">OPTIONS</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Windows (.msi, x64)</strong></td><td>Download a Microsoft Software Installation package for 64-bit PCs (most desktops and laptops).</td></tr><tr><td><strong>Windows (.msi, arm64)</strong></td><td>Download a Microsoft Software Installation package for Windows devices using ARM.</td></tr><tr><td><strong>Windows (.msi, universal)</strong></td><td>Download a Microsoft Software Installation package containing binaries for both x64 and arm64 machines and devices.</td></tr><tr><td><strong>Windows (.exe, universal)</strong></td><td>Download a <code>.exe</code> package containing binaries for both x64 and arm64 machines and devices.</td></tr><tr><td><strong>Windows (.7z, x64)</strong></td><td>Download Remote Desktop Manager as a highly compressed, pre-optimized for x64, .7z file. Use <a href="https://docs.devolutions.net/rdm/kb/troubleshooting-articles/startup-performance/">for better startup performance.</a></td></tr><tr><td><strong>Windows (.7z, arm64)</strong></td><td>Download Remote Desktop Manager as a highly compressed, pre-optimized for armx64, .7z file. Use for <a href="https://docs.devolutions.net/rdm/kb/troubleshooting-articles/startup-performance/">better startup performance</a>.</td></tr><tr><td><strong>Windows (.zip, universal)</strong></td><td>Download Remote Desktop Manager as a compressed <code>.zip</code> file containing binaries for both x64 and arm 64 machines and devices. While <code>.7z</code> files are smaller, <code>.zip</code> files are more universally supported.</td></tr></tbody></table>

### License

It is possible to try Remote Desktop Manager with a [Free trial](https://docs.devolutions.net/resources/getting-started-packages/free-trials/). If you possess a purchased license, please follow the instructions [Registration](https://docs.devolutions.net/rdm/installation/client/registration/).

### Workspace

By default, a local workspace is created using the SQLite format. You can add as many workspaces as needed. Please consult [Workspaces](https://docs.devolutions.net/rdm/workspaces/) for more information.

To use an SQL Server or Azure SQL workspace, refer to [Configure SQL Server](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-sql-server/configure/) or [Configure Azure SQL](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/configure/).

### External applications

Configure your installation path for all external applications you intend to use such as RealVNC, Putty, Filezilla, etc. Set the paths in ***File*** – ***Settings*** – ***Application*** – ***Paths***.

### Terminal Services / Remote Desktop Services

Please consult [Terminal Services / Remote Desktop Services](https://docs.devolutions.net/rdm/installation/client/terminal-services/).
{% endtab %}

{% tab title="macOS" %}
Remote Desktop Manager macOS can be downloaded as a DMG file via our [Devolutions website](https://devolutions.net/remote-desktop-manager/home/download).

### Installation

Depending on the downloaded media, either run the setup or extract the files from the archive in any folder and launch the executable.

### License

It is possible to try Remote Desktop Manager with a [Free trial](https://docs.devolutions.net/resources/getting-started-packages/free-trials/). If you possess a purchased license, please follow the instructions [Registration](https://docs.devolutions.net/rdm/installation/client/registration/).

### Workspace

By default, a local workspace is created using the SQLite format. You can add as many workspaces as needed. Please consult [Workspaces](https://docs.devolutions.net/rdm/workspaces/) for more information.

To use an SQL Server or Azure SQL workspace, refer to [Configure SQL Server](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-sql-server/configure/) or [Configure Azure SQL](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/configure/).
{% endtab %}

{% tab title="Linux" %}
Remote Desktop Manager can be downloaded as DEB or RPM files via the [Devolutions website](https://devolutions.net/remote-desktop-manager/download/).

### License

It is possible to try Remote Desktop Manager with a [Free trial](https://docs.devolutions.net/resources/getting-started-packages/free-trials/). If you possess a purchased license, please follow the instructions [Registration](https://docs.devolutions.net/rdm/installation/client/registration/).

### Workspace

By default, a local workspace is created using the SQLite format. You can add as many workspaces as needed. Please consult [Workspaces](https://docs.devolutions.net/rdm/workspaces/) for more information.

To use an SQL Server or Azure SQL workspace, refer to [Configure SQL Server](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-sql-server/configure/) or [Configure Azure SQL](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/configure/).

### Installation

Depending on the downloaded media, either run the setup or extract the files from the archive in any folder and launch the executable. If this method of installation does not meet your needs, follow the instructions below.

#### Repo method

Devolutions offer Remote Desktop Manager through Cloudsmith for Debian and RedHat-based distributions. For Arch-based distributions, the package is available through AUR, and finally, Devolutions offers a Flatpak package that should cover most other platforms.

**Debian and other Debian-based distributions**

The repository must be set up before installing Remote Desktop Manager through Cloudsmith on any Debian-based distributions, including but not limited to Ubuntu, Pop!\_Os, and Kali Linux.

The following example showcases an Ubuntu system using APT as package manager.

1. To set up the repositary, run the bash script that most fit your needs from the choices below:

**Cloudsmith's automatic setup:**

```bash
curl -1sLf \
  'https://dl.cloudsmith.io/public/devolutions/rdm/setup.deb.sh' \
  | sudo -E bash
```

**Forced specific distribution, release/version, architecture:**

```bash
curl -1sLf \
  'https://dl.cloudsmith.io/public/devolutions/rdm/setup.deb.sh' \
  | sudo -E distro=some-distro codename=some-codename arch=some-arch bash
```

**Manual configuration:**

```bash
apt-get install -y debian-keyring  # debian only
apt-get install -y debian-archive-keyring  # debian only
apt-get install -y apt-transport-https
# For Debian Stretch, Ubuntu 16.04 and later
keyring_location=/usr/share/keyrings/devolutions-rdm-archive-keyring.gpg
# For Debian Jessie, Ubuntu 15.10 and earlier
keyring_location=/etc/apt/trusted.gpg.d/devolutions-rdm.gpg
curl -1sLf 'https://dl.cloudsmith.io/public/devolutions/rdm/gpg.FE7407ECB26FD2FE.key' |  gpg --dearmor >> ${keyring_location}
curl -1sLf 'https://dl.cloudsmith.io/public/devolutions/rdm/config.deb.txt?distro=ubuntu&amp;codename=xenial' > /etc/apt/sources.list.d/devolutions-rdm.list
apt-get update
```

{% hint style="warning" %}
Be sure to replace **ubuntu** and **xenial** in the above with your actual operating system (distribution and distribution release/version).
{% endhint %}

2. Install the package through your chosen package manager (APT here) by running the following script:

```bash
sudo apt-get install remotedesktopmanager
```

**RedHat and RedHat-based systems**

The repository must be set up before installing Remote Desktop Manager through Cloudsmith on any RedHat-based distributions, including but not limited to RHEL, CentOS, SUSE, Fedora. For specific distribution based instructions please refer to [Cloudsmith’s guide](https://cloudsmith.io/~devolutions/repos/rdm/setup/#repository-setup-dnf).

The following example showcases a Fedora system using DNF as package manager.

1. To set up the repositary, run the bash script that most fit your needs from the choices below:

**Cloudsmith's automatic setup**

```bash
curl -1sLf \
  'https://dl.cloudsmith.io/public/devolutions/rdm/setup.rpm.sh' \
  | sudo -E bash
```

**Forced specific distribution, release/version, architecture**

```bash
curl -1sLf \
  'https://dl.cloudsmith.io/public/devolutions/rdm/setup.rpm.sh' \
  | sudo -E distro=DISTRO codename=CODENAME arch=ARCH bash
```

**Manual configuration**

```bash
dnf install yum-utils pygpgme

rpm --import 'https://dl.cloudsmith.io/public/devolutions/rdm/gpg.FE7407ECB26FD2FE.key'
curl -1sLf 'https://dl.cloudsmith.io/public/devolutions/rdm/config.rpm.txt?distro=fedora&codename=29&dnf_version=4' > /tmp/devolutions-rdm.repo
dnf config-manager --add-repo '/tmp/devolutions-rdm.repo'
dnf -q makecache -y --disablerepo='*' --enablerepo='devolutions-rdm' --enablerepo='devolutions-rdm-source'
```

{% hint style="warning" %}
Be sure to replace **fedora** and **29** in the above with your actual operating system (distribution and distribution release/version).
{% endhint %}

2. Install the package through your chosen package manager (DNF here) by running the following script:

```bash
sudo dnf install RemoteDesktopManager
```

**Arch or Arch-based systems**

For Arch-based distributions, including but not limited to Arch, Manjaro, EndeavourOS, Devolutions strongly recommends [Yay](https://github.com/Jguer/yay). The package can also be built from scratch.

**Installing Remote Desktop Manager using Yay**

1. If Yay is not already installed on the machine, do so by using this script:

```bash
sudo pacman -Sy yay
```

2. Install the remote-desktop-manager package:

```bash
yay -Sy remote-desktop-manager
```

3. Run a full system synchronization (recommended):

```bash
yay -Syu
```

or only upgrade the remote-desktop-manager package (may cause dependency issues):

```bash
yay -Sy remote-desktop-manager
```

**Building the package using Pacman**

1. Install base-devel with the following script:

```bash
sudo pacman -S base-devel
```

2. Clone the remote-desktop-manager repository in a particular location:

```bash
git clone https://aur.archlinux.org/remote-desktop-manager.git
```

3. Build and install the pack by running this script and replacing "path\_to\_the\_cloned\_repo":

```bash
cd path_to_the_cloned_repo/
makepkg -si
```

**Flatpak-supported distributions**

To install Remote Desktop Manager on Flatpak-supported distributions, start by setting up Flatpak on the machine according to Flatpak's [Quick Setup page](https://flatpak.org/setup/). Then, install the package using flathub by running these scripts:

```bash
flatpak install flathub com.devolutions.remotedesktopmanager
```

```bash
flatpak run com.devolutions.remotedesktopmanager
```

#### Manual installation on unsupported systems

Here is a simple guide to help installing Remote Desktop Manager Linux on an unsupported distro.

Here are required dependencies:

* glibc 2.29
* libwebkit2gtk-4.0 or libwebkit2gtk-4.1
* ca-certificates
* libsecret-1-0
* gnome-keyring
* libvte-2.91

Devolutions also suggests the following libraries:

* libappindicator
* xdotool
* lsof

Install Remote Desktop Manager Linux using the following steps:

1. Download the [latest .deb version of Remote Desktop Manager](https://devolutions.net/remote-desktop-manager/download/).
2. Make a directory:

   `mkdir ./extractedData/`
3. Move the DEB file to the newly created folder and open that same folder:

   `mv ./RemoteDesktopManager_x.x.x.x_amd64.deb ./extractedData cd ./extractedData`
4. Extract the DEB file's content:

   `ar -x RemoteDesktopManager_x.x.x.x_amd64.deb`
5. Extract data.tar.xz content:

   `tar -xf data.tar.xz`
6. Copy the extracted data’s bin/remotedesktopmananger to /bin:

   `cp -r /bin/remotedesktopmananger /bin`
7. Copy the extracted data’s usr/lib/devolutions/RemoteDesktopManager to /usr/lib/devolutions/RemoteDesktopManager:

   `cp -r /usr/lib/devolutions/RemoteDesktopManager /usr/lib/devolutions/RemoteDesktopManager`

Remote Desktop Manager can then be launched using the remotedesktopmanager terminal command.
{% endtab %}

{% tab title="iOS" %}
On the Apple Store, search for the Remote Desktop Manager application and install the application on your device.

When launching the application on your device, the ***Master password*** window will appear, you can either decide to enter a password protecting Remote Desktop Manager, which will prompt you for your password every time you open the application or if you leave the field blank the application will open without prompting you for a password. You can also choose to use ***Touch ID*** and ***Face ID***.

Remote Desktop Manager iOS automatically creates an ***XML workspace*** the first time it is launched if you choose to skip the ***Setup Wizard***.
{% endtab %}

{% tab title="Android" %}
On the Google Play Store store, search for the Remote Desktop Manager application and install the application on your device.

When launching the application on your device, the ***Master Password*** window will appear, you can either decide to enter a password protecting Remote Desktop Manager, which will prompt you for your password every time you open the application or if you leave the field blank the application will open without prompting your for a password.

Remote Desktop Manager Android will automatically create an XML workspace upon first launch.
{% endtab %}
{% endtabs %}

### Automating downloads in scripts

If you wish to automate Remote Desktop Manager's download in scripts, you can use <https://devolutions.net/productinfo.json> – it has all the information needed and is easily consumable by scripts.

#### See also

* [Devolutions Academy – Quick start: up and running in 10 minutes](https://academy.devolutions.net/student/activity/3266580)


# Registration

When using an [Devolutions Server or Devolutions Cloud](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/), there is no need to register Remote Desktop Manager since the license serial is stored in the workspace and retrieved directly from it. When launching the application for the first time, [add the workspace](https://docs.devolutions.net/rdm/workspaces/create-a-workspace/) containing the serial.

{% tabs %}
{% tab title="Windows" %}

### Registration

1. To add a license serial to the workspace, navigate to ***Administration*** – ***Licenses***.
2. Click ***Add license***.

   ![](https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2236.png)
3. Enter the license serial in the ***License*** field or import the license file using the ***Import*** button.

   ![](https://cdnweb.devolutions.net/docs/RDMW4373_2025_2.png)
4. **Optional**: Check the ***Auto assign*** box to automatically provide the Remote Desktop Manager serial to all newly created users.

   ![](https://cdnweb.devolutions.net/docs/RDMW4374_2025_2.png)
5. Click ***Assigned to*** in the left menu.
6. Click ***Assign all*** or select in the ***Assigned*** column who should have a Remote Desktop Manager serial access. This step will automatically assign the license to the selected users, removing the need to interact with each user.

   ![](https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2237.png)
7. Click ***OK*** and close the ***User and security management*** window.

### Offline registration

If you need to register your license while offline (if internet is disabled or if for whatever reason you cannot reach the servers), you can only do it by [importing the **.lic** file provided to you](https://docs.devolutions.net/portal/licenses/), which contains a JSON Web Token (JWT).

### Request a free trial

The [Devolutions store](https://store.devolutions.net/package) proposes two types of [14-day free trials](https://docs.devolutions.net/resources/getting-started-packages/free-trials/): [Remote Desktop Manager free trial](https://devolutions.net/remote-desktop-manager/trial/) and the [Starter Pack free trial](https://devolutions.net/solutions/starter-pack/trial/). The former gives you access to Remote Desktop Manager and all its functionnalities, and the latter lets you experience Devolutions' entire platform.
{% endtab %}

{% tab title="macOS" %}

### Registration

1. To add a license serial to the workspace, navigate to ***Administration*** – ***Licenses***.

   ![](https://cdnweb.devolutions.net/docs/RDMM2006_2024_3.png)
2. Click ***Add License***.

   ![](https://cdnweb.devolutions.net/docs/RDMM2007_2024_3.png)
3. Enter the license serial in the ***License*** field or import the license file using the ***Import*** button.

   ![](https://cdnweb.devolutions.net/docs/RDMM2003_2024_2.png)
4. Optional: Check the ***Auto assign*** box to automatically provide the Remote Desktop Manager serial to all newly created users.
5. Click ***Assigned to*** in the left menu.
6. Click ***Assign all*** or select in the ***Assigned*** column who should have a Remote Desktop Manager serial access. This step will automatically assign the license to the selected users, removing the need to interact with each user.

   ![](https://cdnweb.devolutions.net/docs/docs_en_rdm_mac_RDMMac0005.png)
7. Click ***OK*** and close the ***User and security management*** window.

### Offline registration

If you need to register your license while offline (if internet is disabled or if for whatever reason you cannot reach the servers), you can only do it by [importing the **.lic** file provided to you](https://docs.devolutions.net/portal/licenses/), which contains a JSON Web Token (JWT).

### Request a free trial

The [Devolutions store](https://store.devolutions.net/package) proposes two types of [14-day free trials](https://docs.devolutions.net/resources/getting-started-packages/free-trials/): [Remote Desktop Manager free trial](https://devolutions.net/remote-desktop-manager/trial/) and the [Starter Pack free trial](https://devolutions.net/solutions/starter-pack/trial/). The former gives you access to Remote Desktop Manager and all its functionnalities, and the latter lets you experience Devolutions' entire platform.
{% endtab %}
{% endtabs %}

#### See also

* [Devolutions Academy - How to enter your Remote Desktop Manager license in an SQL workspace](https://academy.devolutions.net/student/page/2352175-how-to-enter-your-license-in-remote-desktop-manager-rdm?sid_i=0)
* [Licensing issues](https://docs.devolutions.net/rdm/kb/general-knowledge/license/licensing-issues/)


# End of license

Remote Desktop Manager is subscription-based, which means your subscription needs to be renewed every year. All Remote Desktop Manager subscription plans offer software maintenance (1 or 3 years), which includes all major and minor upgrades as well as technical support.

Your subscription agreement needs to be renewed upon expiry. Failure to do so will limit access to your data.


# Installation for all users

{% tabs %}
{% tab title="Windows" %}
The current installation package for Remote Desktop Manager requires elevated privileges and installs the application for all users on the target computer. However, feedback indicates that it successfully completes installation across a broad range of environments within our community. Please follow the procedure below to minimize potential deployment issues in the future.

### Procedure

{% hint style="danger" %}
This procedure registers all file type associations, meaning that RDP files will be opened with Remote Desktop Manager by default. To prevent this, opt for manual installation using the Custom mode, and deselect the RDP file association during setup.
{% endhint %}

1. Copy the installer to a folder available for all users of the workstation (e.g., **C:\Deploy**).
2. Open an elevated command prompt (right-click on the shortcut and select ***Run as administrator***).
3. Run the following command, adapted for the version to install:

   ```powershell
   msiexec /i Setup.{APPNAME}.{VERSION}.msi /Quiet /Passive INSTALLMODE=Complete
   ```
4. Recommended: Disable the auto-update check as all further installations or upgrades should be performed by an administrator using elevated privileges.

To proceed with upgrades from within Remote Desktop Manager, the application must be started with ***Run as administrator***.

### Notes

The Microsoft installer technology renames and copies the installer package to a new, randomized name, registering it in a database. However, our experience shows that this copy sometimes disappears, and the database may become corrupted. As a result, we often recommend that our community use the following Microsoft troubleshooter: [Fix problems that block programs from being installed or removed](https://support.microsoft.com/en-us/topic/fix-problems-that-block-programs-from-being-installed-or-removed-cca7d1b6-65a9-3d98-426b-e9f927e1eb4d)

The quiet and passive parameters are included to prevent user interaction during installation, reducing the likelihood of errors.
{% endtab %}

{% tab title="macOS" %}
The current installation package for Remote Desktop Manager macOS requires elevated privileges and installs the application for all users on the target computer.

### Procedure

1. [Download](https://devolutions.net/remote-desktop-manager/download/)and copy the `.dmg` installer file.
2. Double-click the `.dmg` file to mount it.
3. Install it.
4. Dismount the `.dmg` installer when the installation is complete.
5. Make sure that Remote Desktop Manager macOS has access to files and the network via **Apple menu** – **System settings** – **Privacy & Security**.
   {% endtab %}
   {% endtabs %}


# Ancillary files

{% tabs %}
{% tab title="Windows" %}
Remote Desktop Manager generates ancillary files on your workstation. The table below lists out an example of ancillary files and their locations.

As described in [Configuration file location](https://docs.devolutions.net/rdm/installation/client/configuration-file-location/), the default path for most of these files are customizable.

For this reason, we use the \[CONFIG] token in this documentation to denote when a file is stored in a configuration folder that can be relocated, or the \[PROFILE] token to indicate that they are stored in the local profile. By default, these point to the same exact folder. The only method to separate them is by using a customized configuration.

Since you can also deploy on a portable device, sometimes known as using the XCOPY deployment model, we will use the \[INSTALLDIR] token to indicate that the file is in the same location as Remote Desktop Manager.

The ***Override source*** column indicates if an available mechanism can relocate the files of that category elsewhere.

### Ancillary files location

<table data-header-hidden><thead><tr><th></th><th width="260"></th><th width="130"></th><th></th></tr></thead><tbody><tr><td><strong>FILE(S)</strong></td><td><strong>DESCRIPTION</strong></td><td><strong>LOCATION</strong></td><td><strong>OVERRIDE SOURCE</strong></td></tr><tr><td>Configuration file(s) (<strong>.cfg</strong>, <strong>.bak</strong>, <strong>.ext</strong>, <strong>.exb</strong>)</td><td>Contains Remote Desktop Manager current configurations.<strong>RemoteDesktopManager.bak</strong> is a backup of <strong>RemoteDesktopManager.cfg</strong>.<strong>RemoteDesktopManager.exb</strong> is a backup of <strong>RemoteDesktopManager.ext</strong>.</td><td>[CONFIG]</td><td>None</td></tr><tr><td>Data file(s) (<strong>.xml</strong>, <strong>.db</strong>)</td><td>Contains Remote Desktop Manager workspaces.</td><td>[CONFIG] or custom path.</td><td>None</td></tr><tr><td>Default settings</td><td>Contains Remote Desktop Manager default settings.</td><td>[CONFIG]</td><td>Workspace settings (System Settings)</td></tr><tr><td>Encryption (<strong>.enc</strong>, <strong>.enb</strong>)</td><td><strong>RemoteDesktopManager.enc</strong> contains the encryption key used to encrypt sensitive options.<strong>RemoteDesktopManager.enb</strong> is a backup of <strong>RemoteDesktopManager.enc</strong>.</td><td>[CONFIG]</td><td>None</td></tr><tr><td>Layout files (<strong>.lyt</strong>)</td><td>Contains the layout options of every version of Remote Desktop Manager that have been installed on the machine.</td><td>[CONFIG]</td><td>None</td></tr><tr><td>Log files (<strong>.log</strong>, <strong>.debug</strong>)</td><td>Contains Remote Desktop Manager logs.</td><td>[CONFIG]</td><td>None</td></tr><tr><td>Local playlists</td><td>Contains Remote Desktop Manager local playlists.</td><td>[PROFILE][Workspace]\Playlists</td><td>Use application directory for local playlist will use instead [INSTALLDIR]</td></tr><tr><td>Local Templates</td><td>Contains Remote Desktop Manager local templates.</td><td>They are serialized directly in the configuration file of the application.</td><td>None</td></tr><tr><td>Offline/Cache data (<strong>offline.db</strong>)</td><td>Contains Remote Desktop Manager offline/cache data.</td><td>[PROFILE][Workspace]</td><td>Use application directory for online cache will use instead [INSTALLDIR]</td></tr><tr><td>Sensitive (<strong>.stv</strong>, <strong>.stb</strong>)</td><td><strong>RemoteDesktopManager.stv</strong> contains sensitive options such as workspace configurations, authentication tokens, and MFA keys. It is encrypted with the key contained in <strong>RemoteDesktopManager.enc</strong>.<strong>RemoteDesktopManager.stb</strong> is a backup of <strong>RemoteDesktopManager.stv</strong>.</td><td>[CONFIG]</td><td>None</td></tr><tr><td>Themes</td><td>Contains Remote Desktop Manager theme options.</td><td>[CONFIG]</td><td>None</td></tr></tbody></table>

### Offline and local playlist options

Offline and local playlist options can be accessed by navigating to ***File – Settings – Advanced***.

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW2082_2024_3.png" alt=""><figcaption></figcaption></figure>
{% endtab %}

{% tab title="macOS" %}
Remote Desktop Manager generates ancillary files on your workstation. The table below lists out an example of ancillary files and their locations.

As described in [Configuration file location](https://docs.devolutions.net/rdm/installation/client/configuration-file-location/), the default path for most of these files are customizable.

For this reason, we use the %CONFIG% variable to denote when a file is stored in a configuration folder that can be relocated, or %PROFILE% to indicate that they are stored in the local profile. By default, these point to the same exact folder. The only method to separate them is by using a customized configuration.

The ***Override source*** column indicates if an available mechanism can relocate the files of that category elsewhere.

### Ancillary files location

| FILE(S)                                    | LOCATION                                                         | OVERRIDE SOURCE                              |
| ------------------------------------------ | ---------------------------------------------------------------- | -------------------------------------------- |
| Configuration file(s) (**.cfg**, **.ext**) | %CONFIG%                                                         | None                                         |
| Data file(s) (**.xml**, **.db**)           | %CONFIG% or custom path                                          | None                                         |
| Default settings                           | %CONFIG%                                                         | Workspace settings                           |
| Encryption (**.enc**, **.enb**)            | %CONFIG%                                                         | None                                         |
| Layout files (**.lyt**)                    | %CONFIG%                                                         | None                                         |
| Log files (**.log**, **.debug**)           | %CONFIG%                                                         | None                                         |
| Local playlists                            | %PROFILE%{Workspace}\Playlists                                   | Use application directory for local playlist |
| Local templates                            | Serialized directly in the configuration file of the application | None                                         |
| Offline/Cache data (**offline.db**)        | %PROFILE%{Workspace}                                             | Use application directory for online cache   |
| Sensitive (**.stv**, **.stb**)             | %CONFIG%                                                         | None                                         |
| Themes                                     | %CONFIG%                                                         | None                                         |
| {% endtab %}                               |                                                                  |                                              |
| {% endtabs %}                              |                                                                  |                                              |


# Configuration file location

{% tabs %}
{% tab title="Windows" %}
Remote Desktop Manager saves its configuration in a file named `RemoteDesktopManager.cfg`. This file contains most of the application settings. You can retrieve the installation folder of Remote Desktop Manager by clicking ***File*** – ***Settings*** – ***Advanced***. A hyperlink displays the installation folder in the ***Information*** tab.

<figure><img src="https://webdevolutions.blob.core.windows.net/docs/RDMW4482_2026_2.png" alt=""><figcaption></figcaption></figure>

The configuration file can be located in different folders depending on certain conditions.

| Case                                                         | Configuration file location                                                                                                        |
| ------------------------------------------------------------ | ---------------------------------------------------------------------------------------------------------------------------------- |
| Installed under **Program Files** or **Program Files (x86)** | `%LocalAppData%\Devolutions\RemoteDesktopManager`                                                                                  |
| Application running on Terminal Server                       | <p><code>%AppData%\Devolutions\RemoteDesktopManager</code><br><br>This is the roaming profile and avoids multi-user conflicts.</p> |
| Other                                                        | Installation folder                                                                                                                |

### Override the default path

There are two ways to change the folder where the configuration file is stored:

1. Create a file named "**Override.cfg**" in the application folder. Remote Desktop Manager opens this file and reads the first line. It should contain the desired installation folder (without the file name). If you wish to use the current installation path, put a period in the file. Here are a few examples:

   <table><thead><tr><th width="254">Examples</th><th></th></tr></thead><tbody><tr><td><strong>C:\RDM</strong></td><td>The config file is saved in the designated folder.</td></tr><tr><td><strong>.</strong></td><td>The period is used to specify the Remote Desktop Manager installation folder.</td></tr><tr><td><strong>%AppData%\Devolutions\RemoteDesktopManager</strong></td><td>Specify the application roaming data folder.</td></tr></tbody></table>
2. By adding a key in the registry: CurrentUser\SOFTWARE\RemoteDesktopManager, OptionPath. Set the desired path in the key OptionPath. You must not include the file name in the value, just the path.

### Default configuration for Remote Desktop Services environment

Please refer to [Terminal Services / Remote Desktop Services](https://docs.devolutions.net/rdm/installation/client/terminal-services/) for details.
{% endtab %}

{% tab title="macOS" %}
Remote Desktop Manager macOS saves its configuration in a file named **RemoteDesktopManager.cfg**. This file contains most of the application settings. You can find the configuration file by following these steps:

1. Open ***Finder***.
2. Click ***Go*** in the menu.
3. Select ***Go to folder***.
4. Copy and paste this path: **\~/Library/Application Support**.
5. Open the **com.devolutions.remotedesktopmanager** folder.
6. Locate the **RemoteDesktopManager.cfg** or **RemoteDesktopManagerFree.cfg** file.

For us to provide you a secure link to share your file, write to our customer support team at <service@devolutions.net>.
{% endtab %}
{% endtabs %}


# Portable USB

Remote Desktop Manager can be used as a portable application. The portable mode allows to run multiple versions of Remote Desktop Manager, using various license serials and configurations. To use a single portable Remote Desktop Manager application, follow [Portable Remote Desktop Manager version](https://docs.devolutions.net/rdm/kb/how-to-articles/portable-rdm-installation/).

Remote Desktop Manager stores the offline cache in the Windows profile by default. When using an advanced workspace and planning to use the offline mode, go to ***File*** – ***Settings*** – ***Advanced*** and enable ***Use application directory for offline cache*** to have the offline cache stored in the application folder instead.

{% hint style="danger" %}
This procedure is not recommended for running Remote Desktop Manager from a network share shared by multiple users. This would prevent identifying individual users and would bring conflicts with user preferences.
{% endhint %}

The following steps ensure full portability, streamlined maintenance, and enhanced customizability.

1. [Download the ZIP package of Remote Desktop Manager](https://devolutions.net/remote-desktop-manager/downloadenterprise/).
2. Create a ***RemoteDesktopManager*** folder on the portable device.
3. In that folder, create the following folders:
   1. A ***config*** folder.
   2. A ***data*** folder.
   3. A ***tools*** folder (optional, only if using external tools like Filezilla is intended).
4. Unzip Remote Desktop Manager in the folder.
5. Create a text file named ***override.cfg*** in the folder. Set the content of the file to ***.\config***.
6. Open Remote Desktop Manager and display the workspaces window using ***File – Workspaces***.
7. Create a new workspace of a type that can be stored on the portable device (SQLite, XML, etc.).
8. Configure the workspace using a relative path so it is stored on the portable device: **.\Data\Connections.db**.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMW2079_2024_3.png" alt=""><figcaption></figcaption></figure>
9. Configure the portable applications (FileZilla, UltraVNC, etc.) in the same manner (relative to the folder). Under ***File – Settings – Application – Paths***, click on ***Configure installation Path***.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMW2080_2024_3.png" alt=""><figcaption></figcaption></figure>
10. Select a preferred portable application.

    <figure><img src="https://cdnweb.devolutions.net/docs/RDMW2081_2024_3.png" alt=""><figcaption></figcaption></figure>
11. Delete the pre-existing ***Local workspace*** that was created automatically.

#### See also

* [Devolutions Academy – Install Remote Desktop Manager portable](https://academy.devolutions.net/student/page/2787896-install-remote-desktop-manager-portable?curriculum_activity_id=4263922\&path_id=2628397\&sid=9d9d3d49-aa61-43b2-920b-1a30a0bb61c1\&sid_i=2)


# Remote Desktop Services (Terminal Services)

Remote Desktop Manager has an excellent support for running under a Remote Desktop Services environment. A master configuration file can be created to distribute settings for all new users of the system or even to update existing users' configurations.

{% hint style="success" %}
Make sure to follow [Microsoft's recommendations](https://learn.microsoft.com/en-us/windows-server/administration/performance-tuning/role/remote-desktop/session-hosts) regarding RDS environment setup as default Windows installations severely limit performance.Each user must have a unique application data folder (roaming profiles or similar technologies). Remote Desktop Manager saves some user preferences on the local configuration file. The folder can be wiped out whenever the user logs out of the Windows Session, but it must be accessible for the duration of Remote Desktop Manager execution.
{% endhint %}

### Procedure

1. Follow the installation procedure [for all users](https://docs.devolutions.net/rdm/installation/client/all-users/). This ensures that the Microsoft Installer Database contains all the information needed for all the user profiles of the host.
2. After installing Remote Desktop Manager, configure your preferences. It is recommended to go through all the options to find the set of options that you wish to distribute. The workspaces deserve special attention since it is much better when they are configured by an administrator. You may even take the opportunity to lock the workspaces to protect against any modification by the users. See [Lock a workspace](https://docs.devolutions.net/rdm/workspaces/lock/) for more information.

{% hint style="danger" %}
When using [Devolutions Server or Devolutions Cloud workspaces](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/), it is critical that each user has their own account to authenticate against the workspace. This enables effective logging methods, proper session security, and user-based features.Redistributing a workspace registration should follow one of the following patterns:- The workspace is configured to always ask the username and password.

* You are using integrated security against SQL Server.
* You use environment variables for the username and require the password (we recommend %USERDOMAIN%%USERNAME% or %USERDNSDOMAIN%%USERNAME%).

Do not enable the options to include Devolutions Account credentials as well as any workspace that contains saved credentials while also enabling ***Include workspace credentials***.
{% endhint %}

3. When running Remote Desktop Manager under a Remote Desktop Services environment, it is best to tweak the parameters of the RDP entries to use as few resources as possible, thus improving the startup performance of the application.
   * To further improve the Remote Desktop Manager startup performance, consult solution #3 of the [Startup performance](https://docs.devolutions.net/rdm/kb/troubleshooting-articles/startup-performance/) article.
   * To limit the memory consumption of RDP entries, refer to [RDP sessions memory tuning](https://docs.devolutions.net/rdm/kb/how-to-articles/rdp-session-entry/memory-tuning-rdp-sessions/).
4. Once Remote Desktop Manager is configured, click on ***File*** – ***Settings*** – ***Export options***. This will allow you to choose exactly the workspaces to include, as well as the various categories of settings. Please refer to [Export options](https://docs.devolutions.net/rdm/commands/file/options/export/) for further details. Save the file with the name default.cfg.
5. Move the default.cfg file in the default installation folder of Remote Desktop Manager (`C:\Program Files\Devolutions\Remote Desktop Manager`).

{% hint style="info" %}
Remote Desktop Manager will automatically choose the newest file between remotedesktopmanager.cfg**and default.cfg**in the Local AppData folder.
{% endhint %}

### Workflow

#### New users

Whenever a new user creates a profile on the system, Remote Desktop Manager detects the presence of the `default.cfg` file and uses it as a template to create the user's configuration file.

#### Existing users

There is a group policy to automatically force the new configurations. See [Apply policies](https://docs.devolutions.net/rdm/kb/how-to-articles/group-policies/) to find out how to deploy the **Force the loading of the default.cfg file** policy.

If the user chooses to ignore the new configuration file when presented with the dialog below, they will not be offered the choice until the `default.cfg` file is modified.

Whenever Remote Desktop Manager is started and it detects a new `default.cfg` file, the following dialog will appear:

![](https://cdnweb.devolutions.net/docs/RDMW6051_2025_3.png)

By selecting ***Use new configuration (lose mine)***, the user's configuration is simply overwritten. ***Keep my configuration*** retains the user's configuration and ignores the new default file.


# Custom installer service

Generate custom installation packages in Remote Desktop Manager to deploy workspaces quickly and consistently across your enterprise using preconfigured settings. The ***Custom installer service*** is only available for [Devolutions Server and Devolutions Cloud](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/devolutions-cloud/).

The ***Custom installer service*** replicates the configuration from a Remote Desktop Manager instance. This configuration is used to create an installer file (RDI), which is used to create the installation package intended for distribution. The configuration can contain workspace credentials, database templates, and more. It is a best practice to have a Remote Desktop Manager installation used specifically to create the installation package.

{% hint style="info" %}
The ***No Internet connection*** option in Remote Desktop Manager (***File*** – ***Settings*** – ***Advanced***) must be disabled for the custom installer to work.
{% endhint %}

Create an installer file using Remote Desktop Manager before creating the installer. This process is explained in [Export custom installer configuration](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/installer-file-generator/).

The custom installer service can be found in ***Tools*** – ***All tools***.

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW4478_2026_2.png" alt=""><figcaption></figcaption></figure>

Consult the following topics to set up customized installers in Remote Desktop Manager:

* [Custom installer manager](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/custom-installer-manager/)
* [Export custom installer configuration](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/installer-file-generator/)
* [RDI file generation options](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/option-selection/)

#### See also <a href="#see-also" id="see-also"></a>

* [Devolutions Academy - How to use the custom installer](https://academy.devolutions.net/student/page/2397676-how-to-use-the-custom-installer)


# Custom installer manager

{% hint style="info" %}
Remote Desktop Manager for macOS does not support the custom installer. The alternative would be to [export a `Default.cfg` file](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/installer-file-generator/?tab=macos) and apply it to new installations.
{% endhint %}

1. In Remote Desktop Manager, head to ***Tools*** – ***All tools***, and execute the ***Custom installer manager*** tool.
2. Then, select ***Generate custom installer***.
3. Choose whether to ***Download MSI from the web*** or ***Use pre-downloaded MSI***.
4. Set a ***Version*** and ***Name*** for the configuration.
5. If desired, choose to encrypt the configuration with a password in the installer package.
6. [Create a configuration just for this package](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/custom-installer-manager/#create-a-configuration) or [use an existing Remote Desktop Installer (RDI) file](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/custom-installer-manager/#use-an-existing-file).

<figure><img src="/files/74c8FMROaRzCv8C4wg0s" alt=""><figcaption></figcaption></figure>

#### Create a configuration <a href="#create-a-configuration" id="create-a-configuration"></a>

1. Select ***Create a configuration just for this package***, then click ***Create***.
2. See [RDI file generation options](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/option-selection/) for more information about the different options to choose from. When done, click on ***Export***.
3. When prompted, save the installation package file locally.

#### Use an existing file <a href="#use-an-existing-file" id="use-an-existing-file"></a>

1. Select ***Use existing Remote Desktop Installer (rdi) file***.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMW2072_2024_3.png" alt=""><figcaption></figcaption></figure>
2. In the ***Output filename***, either:
   * Search for an existing local RDI file; or
   * Create one by exporting the configuration from a workspace. See our [RDI file generation options](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/option-selection/) guide for more information about the different options to choose from. When done, click on ***Export***.
3. Click ***Create***.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMW4471_2026_2.png" alt=""><figcaption></figcaption></figure>
4. When prompted, save the installation package file locally.

### Deployment with endpoint management solutions <a href="#deployment-with-endpoint-management-solutions" id="deployment-with-endpoint-management-solutions"></a>

The ***Custom installer manager*** can be used with endpoint management solutions such as Microsoft Intune, Microsoft Configuration Manager (SCCM), or other deployment platforms.

By generating a custom installer that includes the required Remote Desktop Manager configuration, administrators can distribute it through their endpoint management solution to multiple devices. This allows organizations to deploy Remote Desktop Manager at scale while ensuring users receive a predefined configuration upon installation.

{% hint style="info" %}
See [Deploy Remote Desktop Manager using Intune](https://docs.devolutions.net/rdm/kb/knowledge-base/deploy-remote-desktop-manager-settings-intune/) for more details.
{% endhint %}

### Devolutions Launcher custom installer generator <a href="#devolutions-launcher-custom-installer-generator" id="devolutions-launcher-custom-installer-generator"></a>

[Devolutions Launcher](https://devolutions.net/download-center/#launcher) offers the possibility to create custom installers. To do so, head to ***File*** – ***Devolutions account*** – ***Generate custom installer***. The steps are then the same as for Remote Desktop Manager (take from [step #3](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/custom-installer-manager/#step#3) of the present article).

**See also**

* [Devolutions Academy - How to use the custom installer](https://academy.devolutions.net/student/page/2397676-how-to-use-the-custom-installer?sid=2202ce15-ae72-4051-b6d9-0a203c58d229\&sid_i=0)


# Export custom installer configuration

{% tabs %}
{% tab title="Windows" %}
When creating an installation package with the ***Custom installer manager***, an installer file is necessary to determine what to include in the installation configuration. Creating an installer file for each new version is risky since you have to repeat the process manually every time. Instead, it is possible to create the configuration once, save the resulting `.rdi` file, and reuse it as many times as needed.

#### Creating an installer file <a href="#creating-an-installer-file" id="creating-an-installer-file"></a>

1. Head to ***Tools*** – ***All tools*** – ***Custom installer***, click on ***Export custom installer configuration***.
2. Check/uncheck options according what is needed and select the workspaces to be included. See [RDI file generation options](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/option-selection/) for more information about the different options to choose from.
3. Click ***Export***, then save the `.rdi` file locally.

This file can be used in the ***Custom installer manager*** when creating an installation package.

{% hint style="info" %}
For more information on how to create a custom installer package, please consult [Custom installer manager](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/custom-installer-manager/).
{% endhint %}
{% endtab %}

{% tab title="macOS" %}
Remote Desktop Manager for macOS does not support the custom installer. Only a `.cfg` file can be used; `.rdi` and `.msi` files are not available on macOS.

This article describes how to export a `Default.cfg` file from Remote Desktop Manager macOS and apply it to new installations. When the application opens for the first time, users can choose to load the `Default.cfg` file, which automatically applies the predefined settings and workspaces

#### Export and apply a default configuration file <a href="#export-and-apply-a-default-configuration-file" id="export-and-apply-a-default-configuration-file"></a>

1. In Remote Desktop Manager, click on ***File*** – ***Export*** – ***Export settings***.
2. Select the required settings, then choose which workspaces to include.
3. Click ***Export***.
4. Save the `Default.cfg` file.
5. For new installations, create the `com.devolutions.remotedesktopmanager` folder in `/Users/<your user>/Library/Application Support/` with the `Default.cfg` file.
6. When Remote Desktop Manager opens for the first time, it prompts the user to use the `Default.cfg` file. If the user clicks ***Yes***, the settings and workspaces are loaded.
   {% endtab %}
   {% endtabs %}

#### See also

* [Devolutions Academy - How to Use the Custom Installer](https://academy.devolutions.net/student/page/2397676-how-to-use-the-custom-installer?sid=2202ce15-ae72-4051-b6d9-0a203c58d229\&sid_i=0)


# RDI file generation options

{% hint style="info" %}
Remote Desktop Manager macOS does not support the custom installer. The alternative would be to [export a `Default.cfg` file](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/installer-file-generator/?tab=macos) from Remote Desktop Manager macOS and apply it to new installations.
{% endhint %}

When generating the installer file, some elements can be included or excluded from the configuration. This process replicates the configuration of the Remote Desktop Manager Windows instance currently used and generates an RDI installer file. Once it has been generated, the installer file can be used as many times as needed to create custom installers. For security reasons, some settings that may contain credentials such as ***Saved templates*** are disabled by default.

Remote Desktop Manager may install required add-ons automatically when it detects that they are needed (configured in ***File – Settings – Application – Paths***). If customizing the application's installation path of an add-on is required, first perform the modification, then create the installation package. This setting wil l be replicated in the RDI installer file.

The ***Custom installer configuration generator*** is located in ***Tools*** – ***All tools*** – ***Custom installer service*** – ***Export custom installer configuration***.

### Security concerns <a href="#security-concerns" id="security-concerns"></a>

Here are some key security concerns:

* Do not distribute the Devolutions Account credentials, as this will grant access to all users linked to the online account used for creating the installer package.
* All local templates will be included in the distribution. If any templates contain credentials, it may introduce a security risk. Share only the necessary information to minimize exposure.
* You should only share workspaces that are using either integrated security or an environment variable for the username. Passwords for accessing a workspace should never be shared.

### Options list <a href="#options-list" id="options-list"></a>

| OPTION                                  | DESCRIPTION                                                                                                                                                                                                                              |
| --------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| **Proxy settings**                      | Includes your Internet proxy settings. This option is enabled by default.                                                                                                                                                                |
| **Saved installation paths**            | Preserves your installation paths configured for external third-party applications. Use this only when all of the user's machines use the same paths. This option is enabled by default.                                                 |
| **Saved templates**                     | Includes your local templates in the custom installer. Database templates are stored in the workspace and may be a better option if you need to share them.                                                                              |
| **Devolutions Account credentials**     | Includes your Devolutions Account credentials used to create the custom installer. See the [security concerns](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/option-selection/#security-concerns) above. |
| **Include workspace credentials**       | Includes the credentials for all selected workspaces below. Consult the [security concerns](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/option-selection/#security-concerns) above.                    |
| **Clear application lock information**  | Clears the information from the ***Lock application*** settings in ***File – Settings – Security*** (local).                                                                                                                             |
| **Use new configuration**               | Automatically overrides the default configuration file with the one from the custom installer.                                                                                                                                           |
| **Keep existing workspace credentials** | Retains the credentials of the existing workspaces, even when they differ from those of the custom installer.                                                                                                                            |


# Database upgrade

The information below applies to installations with workspaces that are using a database as their data store.

Some Remote Desktop Manager releases must alter the database structure. These are performed automatically for you but it is a best practice to perform a backup of your workspace beforehand. Additionally, if you are in a team environment, you must be the sole user connected to the database during the upgrade.

{% hint style="danger" %}
Key points to consider:- The user performing the update must have administrative privileges on the underlying database. (SYSDBA or DB\_OWNER).

* Perform a database backup and ensure that you can quickly perform a restore if required.
* If your organization allows for a read/write offline cache, ensure that all of your users have merged their offline edits.
  {% endhint %}

Follow these steps for a successful version update:

{% tabs %}
{% tab title="Windows" %}

1. Verify your installed version of the SQL Server database. Consult our [Microsoft SQL Server](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-sql-server/) article to know which versions are supported.
2. Ensure you are the sole user of the database during the upgrade process. If your environment allows for offline use, have your team switch to the offline mode, or have them switch to another workspace.
3. Back up your database using the database tools.
4. Install the desired version of Remote Desktop Manager, using a [portable (USB)](https://docs.devolutions.net/rdm/installation/client/portable-usb/) deployment model may be desirable if you are doing this on your personal workstation.
5. Open Remote Desktop Manager while logged on as a user with administrative rights. You must also be SYSDBA or DB\_OWNER.
6. You may be prompted with an upgrade message when your workspace is accessed. If so, accept the upgrade.
7. If you were not prompted with an upgrade message, locate your workspace to upgrade in ***File – Workspaces*** and open its property window.
8. Switch to the ***Upgrade*** tab, then click on ***Update database***.
9. Wait for a confirmation dialog.
10. Close the dialog.
11. Ensure your Remote Desktop Manager application is currently using that workspace.
12. Press <kbd>Ctrl</kbd>+<kbd>F5</kbd> to force a full refresh.
13. Validate the content and perform a check of the technologies that are critical in your environment.
14. Update the client software on all workstations.
    {% endtab %}

{% tab title="macOS" %}

1. Verify your installed version of the SQL Server database. Consult our [Microsoft SQL Server](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-sql-server/) article to know which versions are supported.
2. Ensure you are the sole user of the database during the upgrade process. If your environment allows for offline use, have your team switch to the offline mode, or have them switch to another workspace.
3. Back up your database using the database tools.
4. Open Remote Desktop Manager macOS while logged on as a user with administrative rights. You must also be SYSDBA or DB\_OWNER.
5. You may be prompted with an upgrade message when your workspace is accessed. If so, accept the upgrade.
6. If you were not prompted with an upgrade message, locate your workspace to upgrade in ***File – Workspaces*** and open its property window.
7. Switch to the ***Upgrade*** tab, then click on ***Update database***.
8. Wait for a confirmation dialog.
9. Close the dialog.
10. Ensure your Remote Desktop Manager macOS application is currently using that workspace.
11. Press <kbd>Cmd</kbd>+<kbd>F5</kbd> to force a full refresh.
12. Validate the content and perform a check of the technologies that are critical in your environment.
13. Update the client software on all workstations.
    {% endtab %}
    {% endtabs %}

#### See also

* [Devolutions Academy – How to perform a database upgrade in an SQL workspace](https://academy.devolutions.net/student/activity/2592286-how-to-perform-a-database-upgrade-in-an-sql-data-source)


# Update

When a new Remote Desktop Manager version is available, an update window appears in the application prompting for an update. It also displays the ***Release notes*** (new features, improvements, fixes, breaking changes).

Download the latest version, skip it, or have Remote Desktop Manager notify you about the update at a later time.

{% tabs %}
{% tab title="Windows" %}
Download the latest version, skip it, or have Remote Desktop Manager notify you about the update at a later time.

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW2005_2024_1.png" alt=""><figcaption></figcaption></figure>

<table><thead><tr><th width="330">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Download this version and install now</strong></td><td>Immediately download the new version and install it.</td></tr><tr><td><strong>Download this version and install when the application is closed</strong></td><td>Download the version and wait for the application to be closed before installing.</td></tr><tr><td><strong>Download installer using your default browser</strong></td><td>Download the installer externally using your default web browser.</td></tr><tr><td><strong>Skip this version</strong></td><td>Do not update the application with this version.</td></tr><tr><td><strong>Remind me later</strong></td><td>Remind your to update the next time the application is opened.</td></tr></tbody></table>

{% hint style="info" %}
Click [here](https://docs.devolutions.net/rdm/kb/knowledge-base/auto-update-rdm-intune/)to learn how to use Microsoft Intune to automatically update Remote Desktop Manager.
{% endhint %}
{% endtab %}

{% tab title="macOS" %}

<table><thead><tr><th width="221">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Install update</strong></td><td>Immediately download the new version and install it.</td></tr><tr><td><strong>Skip this version</strong></td><td>Do not update the application with this version.</td></tr></tbody></table>
{% endtab %}

{% tab title="Linux" %}
{% hint style="info" %}
The following steps are for Ubuntu, but may vary depending on the distribution.
{% endhint %}

1. Launch Remote Desktop Manager Linux.
2. If not prompted, go to the ***Help*** section in the ribbon, then click on ***Check for Updates***.
3. Click on ***Download from Website***.
4. By default, it should select the Linux file (*.deb*), then click on ***Download***.
5. Click on ***Activities*** in the top left.
6. Click on ***Files*** and go to the ***Downloads*** folder.
7. Right-click an empty space and select ***Open in Terminal***.
8. Input `sudo dpkg -i RemoteDesktopManager_`*VersionNumberHere*`_amd64.deb`.
9. There will be a password prompt, enter the password in the terminal and press Enter.
   {% endtab %}
   {% endtabs %}


# Uninstall

{% tabs %}
{% tab title="Windows" %}
Run the uninstaller if it was installed with the default setup file, or delete the installation folder directly if it was installed from the binaries.

Remote Desktop Manager does not install anything in the Windows system directory. The only registry settings created are for the auto-run functionality and the installation path. As a result, it simplifies uninstalling Remote Desktop Manager.

The application configuration files are saved in **%LocalAppData%\Devolutions\RemoteDesktopManager** or **%AppData%\Devolutions\RemoteDesktopManager** by default. If desired, it is possible to delete this folder for a complete uninstall.

{% hint style="info" %}
If you are using a local workspace like [SQLite](https://docs.devolutions.net/rdm/workspaces/workspace-types/local-workspaces/sqlite/) or [XML](https://docs.devolutions.net/rdm/workspaces/workspace-types/local-workspaces/xml/), your workspace may be saved in the configuration folder. Perform a backup of the workspace prior to the deletion of the folder.
{% endhint %}

### Uninstall and reinstall Remote Desktop Manager without the CFG file

The CFG file is not deleted when Remote Desktop Manager is reinstalled or updated. This is intended to avoid deleting the configuration made by users. However, if the CFG file is deleted manually and Remote Desktop Manager is restarted, it will check the default location of the **connections.db** file (which is the file that contains data of the local workspace) to see if the creation of a local workspace is required. Since a local workspace is required for Remote Desktop Manager to start, it will ***load the previous connections.db file*** if the default location is not changed.

To encrypt the content of a local workspace, a master key must be set. It will not be possible for anyone who does not have access to the master key to view the data contained in the **connections.db** file.

{% hint style="info" %}
To configure a master key, please refer to [Manage Master Key](https://docs.devolutions.net/rdm/commands/file/change-master-key/).
{% endhint %}
{% endtab %}

{% tab title="macOS" %}
To uninstall Remote Desktop Manager macOS, move the application to the trash. Additionally, delete the **com.devolutions.remotedesktopmanager** folder to remove all the local files associated with the application. This folder is located in **Macintosh HD/Users/Username/Library/Application Support**.

The **com.devolutions.remotedesktopmanager** folder contains the following files:

* The configuration file (**RemoteDesktopManager.cfg**)
* The layout configuration file (**RemoteDesktopManager.lyt**)
* The application logs (**RemoteDesktopManager.log**)
* The default XML workspace
* The default SQLite workspace
  {% endtab %}
  {% endtabs %}


# Workspaces

{% tabs %}
{% tab title="Windows" %}
Workspaces are at the heart of Remote Desktop Manager, acting as containers for entries.

Use <kbd>Ctrl</kbd>+<kbd>Space</kbd> to easily [search](https://docs.devolutions.net/rdm/commands/view/search/) through vaults, entries, tabs, and workspaces.

### Settings

A workspace can be a local file or a database (either local or shared). Multiple workspaces can be managed at the same time as seen below.

### Create a workspace

Please consult [Create a workspace](https://docs.devolutions.net/rdm/workspaces/create-a-workspace/) for more information.

### Multiple workspaces

Multiple workspaces can be configured, but there can only be one workspace active at a time. Switch from one workspace to another by using the workspace drop-down list.

![](https://cdnweb.devolutions.net/docs/RDMW6102_2024_3.png)

### Startup workspace

You may assign a workspace to open automatically when Remote Desktop Manager starts.

<table><thead><tr><th width="221">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Use default workspace</td><td>Select the workspace to connect to when the application starts.</td></tr><tr><td>Last used workspace</td><td>Connect to the last used workspace.</td></tr><tr><td>Prompt for workspace</td><td>Prompt the user to for a workspace to connect to.</td></tr></tbody></table>

### System settings

Devolutions [workspaces](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/) can manage a lot more settings related to the database and security. Those settings are saved directly in the database. For more information, please consult [System settings](https://docs.devolutions.net/rdm/commands/administration/system-settings/).
{% endtab %}

{% tab title="macOS" %}
Workspaces are at the heart of Remote Desktop Manager, acting as containers for entries.

### Settings

A workspace can be a local file or a database (either local or shared). Multiple workspaces can be managed at the same time as seen below.

### Create a workspace

Please consult [Create a workspace](https://docs.devolutions.net/rdm/workspaces/create-a-workspace/) for more information.

### Multiple workspaces

Multiple workspaces can be configured, but there can only be one workspace active at a time. Switch from one workspace to another by using the workspace drop-down list.

![](https://cdnweb.devolutions.net/docs/RDMM6018_2024_3.png)

### Startup workspace

You may assign a workspace to open automatically when Remote Desktop Manager starts.

<table><thead><tr><th width="212">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Use default workspace</td><td>Select the workspace to connect to when the application starts.</td></tr><tr><td>Last used workspace</td><td>Connect to the last used workspace.</td></tr><tr><td>Prompt for workspace</td><td>Prompt the user to for a workspace to connect to.</td></tr></tbody></table>

### System settings

Devolutions [workspaces](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/) can manage a lot more settings related to the database and security. Those settings are saved directly in the database. For more information, please consult [System settings](https://docs.devolutions.net/rdm/commands/administration/system-settings/).
{% endtab %}
{% endtabs %}

#### See also

* [Devolutions Academy - Choosing the right workspace](https://academy.devolutions.net/student/path/1916054/activity/2667043)


# Workspace types

Remote Desktop Manager supports multiple types of workspaces. First decide which workspace you are going to use. For guidance on selecting the right workspace, check out our Devolutions Academy course: [Choosing the right workspace](https://academy.devolutions.net/student/path/1916054/activity/2667043).

Upon initial installation, Remote Desktop Manager uses a local workspace which is an SQLite database.

| NAME                     | DESCRIPTION                                                                                                                                                                                                                                                                                           | PROS AND CONS                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| ------------------------ | ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |
| **Devolutions Server**   | Remote Desktop Manager uses Devolutions Server to store session information. For more information, consult [Devolutions Server](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/server/).                                                                               | **Pros:** Quick; Reliable; Secure; Supports all features such as attachments, [Usage logs](https://docs.devolutions.net/server/web-interface/utilities/reports/logs/), [Offline mode](https://docs.devolutions.net/server/web-interface/administration/security-management/user-groups/settings/), and [User management](https://docs.devolutions.net/server/web-interface/administration/security-management/users/); Active Directory integration. **Cons:** Installation required.                                                                                                                                                                        |
| **Devolutions Cloud**    | Remote Desktop Manager connects to the Devolutions Cloud vault. For more information, see the [products features and highlights](https://devolutions.net/hub/) and consult [Devolutions Cloud](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/devolutions-cloud/).     | **Pros:** Quick; Reliable; Secure; Shareable. **Cons:** Cannot be self-hosted; No offline mode.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| **Microsoft Azure SQL**  | Remote Desktop Manager uses the Microsoft cloud platform to save and manage all sessions. For more information, consult [Azure SQL](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/).                                                              | **Pros:** Quick; Reliable; Secure; Supports all features such as [Attachments](https://docs.devolutions.net/rdm/commands/window/attachments/), [Activity logs](https://docs.devolutions.net/rdm/commands/reports/activity-logs/), [Offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/), and [User management](https://docs.devolutions.net/rdm/commands/administration/user-management/). **Cons:** Microsoft Azure needs to be configured.                                                                                                                                                                                             |
| **Microsoft SQL Server** | Remote Desktop Manager uses SQLServer to save and manage all sessions. This is one of the available workspaces for a multi-user environment. For more information, consult [SQL Server (MSSQL)](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-sql-server/). | **Pros:** Quick; Reliable; Secure; Supports all features such as [Attachments](https://docs.devolutions.net/rdm/commands/window/attachments/), [Usage logs](https://docs.devolutions.net/rdm/commands/reports/activity-logs/), [Offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/), and [User management](https://docs.devolutions.net/rdm/commands/administration/user-management/); SQL Server Express is free. **Cons:** SQL Server must be installed.                                                                                                                                                                              |
| **SQLite**               | Remote Desktop Manager uses an SQLite database to store session information. For more information, consult [SQLite](https://docs.devolutions.net/rdm/workspaces/workspace-types/local-workspaces/sqlite/).                                                                                            | **Pros:** Quick; Reliable; Free database; Supports all features such as [Attachments](https://docs.devolutions.net/rdm/commands/window/attachments/), [Usage logs](https://docs.devolutions.net/rdm/commands/reports/activity-logs/), and [Offline mode](https://docs.devolutions.net/rdm/workspaces/off).                                                                                                                                                                                                                                                                                                                                                   |
| **XML**                  | Remote Desktop Manager saves the settings directly in a file in the XML format. For more information, consult [XML](https://docs.devolutions.net/rdm/workspaces/workspace-types/local-workspaces/xml/).                                                                                               | **Pros:** Easy backup; Can be edited manually or by an external system; No installation. **Cons:** No possibility of sharing; No security management; Possible conflict or data corruption; Does not support all features such as [Attachments](https://docs.devolutions.net/rdm/commands/window/attachments/), [Usage logs](https://docs.devolutions.net/rdm/commands/reports/activity-logs/), [Offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/), [Licenses](https://docs.devolutions.net/rdm/commands/administration/licenses/), and [User management](https://docs.devolutions.net/rdm/commands/administration/user-management/). |

#### See also

* [Devolutions Academy – Understanding vaults](https://academy.devolutions.net/student/activity/3266630)


# Native workspaces

***Native workspaces*** are highly configurable and typically running on an advanced management system such as a database management system or Devolutions own online services.

They greatly increase the set of managing features available to administrators, such as:

* Document uploads and entry attachments
* Auditing and logging
* Advanced security with [user management](https://docs.devolutions.net/rdm/commands/administration/user-management/)
* [Offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/)
* [Multifactor authentication](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/)

Currently, the native workspaces are:

* [Devolutions Cloud](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/devolutions-cloud/)
* [Devolutions Server](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/server/)

## Choosing the right native workspace

This section is intended for teams planning to use Devolutions Server or Devolutions Cloud as their workspace.

To assist with selecting the appropriate workspace, here is a set of concerns and the list of workspaces that can serve in such a context.

{% hint style="danger" %}
When choosing a non-on-premises workspace, it is important to account for the security of data both at rest and in transit. It is strongly recommended to further encrypt data using a master key for file-based solutions or a [security provider](https://docs.devolutions.net/rdm/commands/administration/security-providers/) for [advanced workspaces](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/), ensuring that only authorized parties can access the data.
{% endhint %}

<table><thead><tr><th width="449">CONCERN</th><th align="center">Devolutions Server</th><th align="center">Devolutions Cloud</th></tr></thead><tbody><tr><td>Self-hosted data</td><td align="center">X</td><td align="center"></td></tr><tr><td>Cloud-hosted data</td><td align="center"></td><td align="center">X</td></tr><tr><td>Unaccessible database to end users</td><td align="center">X</td><td align="center">X</td></tr><tr><td>Encryption at rest and in transit</td><td align="center">X</td><td align="center">X</td></tr><tr><td><a href="https://blog.devolutions.net/2023/05/unraveling-zero-knowledge-and-zero-trust-concepts/">Zero-knowledge</a> on sensitive data</td><td align="center"></td><td align="center">X</td></tr><tr><td>Privileged Access Management (PAM) module</td><td align="center">X</td><td align="center">X</td></tr><tr><td>AD accounts used for authentication</td><td align="center">X</td><td align="center"></td></tr><tr><td>AD group membership used to assign permissions</td><td align="center">X</td><td align="center">X</td></tr><tr><td>Activity logs</td><td align="center">X</td><td align="center">X</td></tr><tr><td>Data accessible globally</td><td align="center">Note</td><td align="center">X</td></tr><tr><td>Just-in-time (JIT) connections via Devolutions Gateway</td><td align="center">X</td><td align="center">X</td></tr></tbody></table>

#### Note

Exposing a Devolutions Server instance to the Internet without protection from DDoS attacks is not recommended. It is essential to use strong passwords and obscure account names that cannot be easily deduced through social data mining techniques.

#### See also

* [Devolutions Academy - Choosing the right workspace](https://academy.devolutions.net/student/path/1916054/activity/2667043)


# Native workspace configuration checklist

{% tabs %}
{% tab title="Windows" %}
Here is a checklist designed to help IT administrators install and configure Remote Desktop Manager for their team with our native workspaces, Devolutions Server and Devolutions Cloud.

[Download](https://devolutions.net/remote-desktop-manager/download/) and install Remote Desktop Manager before proceeding.

| Checklist for native workspaces                                                                                                                                                                                                                                                | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| <p>Step 1 - Register your license</p><ul><li><a href="https://docs.devolutions.net/rdm/installation/client/registration">Registration</a></li><li><a href="https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/">Free trials</a></li></ul> | It is to possible to obtain 14-day [trials](https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/) for the Devolutions platform or a full version of Remote Desktop Manager.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| Step 2 - Add your workspace                                                                                                                                                                                                                                                    | <p>Warning: When choosing any <a href="https://docs.devolutions.net/rdm/workspaces/create-a-workspace/">workspace</a> type that is not on-premises, you must consider the security of the data at rest and in transit. We strongly recommend that you further encrypt your data using a master key for file-based solutions or a <a href="https://docs.devolutions.net/rdm/commands/administration/security-providers/">security provider</a> for <a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/">Devolutions Server and Devolutions Cloud</a>. This ensures that only you can read the data.<br>Upon first launch, Remote Desktop Manager uses a local SQLite workspace. The different workspaces are explained in <a href="https://docs.devolutions.net/rdm/workspaces/">Workspaces</a>. For help selecting a workspace tailored to your needs, please see <a href="https://docs.devolutions.net/rdm/getting-started/checklist-enterprises/select-workspace-type/">Select a <em><strong>Native Team</strong></em> workspace</a>.</p> |
| Step 3 - Select your security provider                                                                                                                                                                                                                                         | Select your [security provider](https://docs.devolutions.net/rdm/commands/administration/security-providers/) before importing or creating any data in your database so nobody can read your entry configuration data, even when people have a direct access to your database.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| Step 4 - Create your folder structure                                                                                                                                                                                                                                          | Top level folders are at the foundation of a solid security structure. Your [folder structure](https://youtu.be/__xK92eTdgU?feature=shared) (folder entries) should represent your company structure. For example, you can create a folder for your Production team, one for your Staging team and one for your Testing team.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| Step 5 - Create your default settings                                                                                                                                                                                                                                          | In ***File*** – ***Settings***, you can set options for Remote Desktop Manager and create [default settings templates](https://docs.devolutions.net/rdm/commands/file/templates/default-settings/). Each entry type is supported and can have a default template defined to fit your requirements. After you configure the options, use the [custom installer](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/) to share the pre-configured version with your team.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| Step 6 - Create users                                                                                                                                                                                                                                                          | Remote Desktop Manager supports advanced [user management](https://docs.devolutions.net/rdm/commands/administration/user-management/). User accounts must be created manually by an administrator of the database.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| Step 7 - Create user groups                                                                                                                                                                                                                                                    | Create [user groups](https://docs.devolutions.net/rdm/commands/administration/user-groups-management/) to manage your security system. You can then assign users to user groups, making it easy to grant permissions to a set of users instead of having to manage permissions individually.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| Step 8 - Create entries                                                                                                                                                                                                                                                        | An [entry](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/) is how you save information about your sessions (e.g., RDP, SSH), credentials, websites, VPNs, synchronizers, and documents.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| Step 9 - Grant permissions                                                                                                                                                                                                                                                     | Once your users are created, you can then grant [permissions](https://docs.devolutions.net/rdm/user-groups-based-access-control/permissions/) for user group-based access control. The permissions granted on the folder can be inherited by each entry set under that folder.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| Step 10 - Import your data                                                                                                                                                                                                                                                     | The final step is to [import your data](https://docs.devolutions.net/rdm/commands/file/import/) into Remote Desktop Manager. You can import your sessions, logins, and contacts in a few steps.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| {% endtab %}                                                                                                                                                                                                                                                                   |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |

{% tab title="macOS" %}
Here is a checklist designed to help IT administrators install and configure Remote Desktop Manager for their team with our native workspaces, Devolutions Server and Devolutions Cloud.

[Download](https://devolutions.net/remote-desktop-manager/download/) and install Remote Desktop Manager before proceeding.

| Checklist for native workspaces                                                                                                                                                                                                                                                | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| <p>Step 1 - Register your license</p><ul><li><a href="https://docs.devolutions.net/rdm/installation/client/registration">Registration</a></li><li><a href="https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/">Free trials</a></li></ul> | It is to possible to obtain 14-day [trials](https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/) for the Devolutions platform or a full version of Remote Desktop Manager.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| Step 2 - Add your workspace                                                                                                                                                                                                                                                    | <p>Warning: When choosing any <a href="https://docs.devolutions.net/rdm/workspaces/create-a-workspace/">workspace</a> type that is not on-premises, you must consider the security of the data at rest and in transit. We strongly recommend that you further encrypt your data using a master key for file-based solutions or a <a href="https://docs.devolutions.net/rdm/commands/administration/security-providers/">security provider</a> for <a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/">Devolutions Server and Devolutions Cloud</a>. This ensures that only you can read the data.<br>Upon first launch, Remote Desktop Manager uses a local SQLite workspace. The different workspaces are explained in <a href="https://docs.devolutions.net/rdm/workspaces/">Workspaces</a>. For help selecting a workspace tailored to your needs, please see <a href="https://docs.devolutions.net/rdm/getting-started/checklist-enterprises/select-workspace-type/">Select a <em><strong>Native Team</strong></em> workspace</a>.</p> |
| Step 3 - Select your security provider                                                                                                                                                                                                                                         | Select your [security provider](https://docs.devolutions.net/rdm/commands/administration/security-providers/) before importing or creating any data in your database so nobody can read your entry configuration data, even when people have a direct access to your database.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| Step 4 - Create your folder structure                                                                                                                                                                                                                                          | Top level folders are at the foundation of a solid security structure. Your folder structure (folder entries) should represent your company structure. For example, you can create a folder for your Production team, one for your Staging team and one for your Testing team.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| Step 5 - Create your default settings                                                                                                                                                                                                                                          | In ***File*** – ***Settings***, you can set options for Remote Desktop Manager and create [default settings templates](https://docs.devolutions.net/rdm/commands/file/templates/default-settings/). Each entry type is supported and can have a default template defined to fit your requirements. After you configure the options, use the [custom installer](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/) to share the pre-configured version with your team.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| Step 6 - Create users                                                                                                                                                                                                                                                          | Remote Desktop Manager supports advanced [user management](https://docs.devolutions.net/rdm/commands/administration/user-management/). User accounts must be created manually by an administrator of the database.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| Step 7 - Create user groups                                                                                                                                                                                                                                                    | Create [user groups](https://docs.devolutions.net/rdm/commands/administration/user-groups-management/) to manage your security system. You can then assign users to user groups, making it easy to grant permissions to a set of users instead of having to manage permissions individually.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| Step 8 - Create entries                                                                                                                                                                                                                                                        | An [entry](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/) is how you save information about your sessions (e.g., RDP, SSH), credentials, websites, VPNs, synchronizers, and documents.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| Step 9 - Grant permissions                                                                                                                                                                                                                                                     | Once your users are created, you can then grant [permissions](https://docs.devolutions.net/rdm/user-groups-based-access-control/permissions/) for user group-based access control. The permissions granted on the folder can be inherited by each entry set under that folder.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| Step 10 - Import your data                                                                                                                                                                                                                                                     | The final step is to [import your data](https://docs.devolutions.net/rdm/commands/file/import/) into Remote Desktop Manager. You can import your sessions, logins, and contacts in a few steps.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| {% endtab %}                                                                                                                                                                                                                                                                   |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| {% endtabs %}                                                                                                                                                                                                                                                                  |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |


# Set up a team folder for default settings

{% tabs %}
{% tab title="Windows" %}
A team folder must be created on a server drive to store default settings templates, allowing them to be shared with the team.

1. Access the server drive (such as \\\servercommon) and create a new team folder to hold all the team's default settings templates.

   <figure><img src="https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2162.png" alt=""><figcaption></figcaption></figure>
2. In Remote Desktop Manager, go to ***File – Settings – Paths***.
3. In ***Default templates***, enter the path to the newly created folder stored on the server drive. All default templates will then be automatically stored in this folder.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMW6112_2024_3.png" alt=""><figcaption></figcaption></figure>
4. If there are remote workers, ensure they can access the shared server in offline mode. Map the network drive, then follow [these instructions](https://www.thewindowsclub.com/windows-10-sync-center) for offline mode access on Windows 10/11.

   <figure><img src="https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2164.png" alt=""><figcaption></figcaption></figure>

{% endtab %}

{% tab title="macOS" %}
A team folder must be created on a server drive to store default settings templates, allowing them to be shared with the team.

1. Access the server drive (such as \\\servercommon) and create a new team folder to hold all the team's default settings templates.
2. In Remote Desktop Manager macOS, go to ***File – Settings – General - Paths***.
3. In ***Default templates***, enter the path to the newly created folder stored on the server drive. All default templates will then be automatically stored in this folder.

   ![](https://cdnweb.devolutions.net/docs/RDMM6018_2025_1.png)
4. If there are remote workers, ensure they can access the shared server in offline mode. Map the network drive, then use a equivalent of Windows Sync Center for offline mode access.
   {% endtab %}
   {% endtabs %}


# Devolutions Cloud

Devolutions Cloud is for businesses who need to share passwords and credentials within their organization. Please consult our [website](https://devolutions.net/hub/) for more information on this service.

#### General

<table><thead><tr><th width="215">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Name</strong></td><td>Name of the workspace.</td></tr><tr><td><strong>Email</strong></td><td>Your <a href="https://portal.devolutions.com/">Devolutions Account</a> email address.</td></tr><tr><td><strong>Host</strong></td><td>Copy in the <em><strong>Host</strong></em> field your Devolutions Cloud URL (ex: <strong>https://windjammer.devolutions.app/</strong>) or click on the three dots to get a drop-down list to select from.</td></tr><tr><td><strong>Create your Devolutions Cloud instance</strong></td><td>Provision a new Devolutions Cloud instance in Remote Desktop Manager.</td></tr></tbody></table>

#### VPN

Open a VPN to access your data prior to connecting to your Devolutions Cloud.

<table><thead><tr><th width="196">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Type</strong></td><td>Select between <em><strong>None</strong></em> or <em><strong>On first connect</strong></em>.</td></tr><tr><td><strong>RDM file</strong></td><td>Open a <em><strong>VPN entry type</strong></em> from an <em><strong>RDM file</strong></em> before connecting to the workspace.</td></tr><tr><td><strong>Override credentials</strong></td><td>Override credentials such as <em><strong>Username, Domain</strong></em>, and <em><strong>Password</strong></em>.</td></tr></tbody></table>

#### PowerShell

Enter the application information. [Devolutions.PowerShell module](https://docs.devolutions.net/powershell/overview/what-is-powershell/) ([RDM cmdlets](https://docs.devolutions.net/rdm/commands/tools/powershell/)) leverages the application information for authentication, enabling seamless login without user intervention (i.e., web page opening).

| OPTION        | DESCRIPTION                |
| ------------- | -------------------------- |
| **Tenant ID** | Enter the ***Tenant ID***. |
| **Password**  | Enter the ***Password***.  |

#### Advanced

These advanced settings allow to configure automatic refresh intervals, set a prompt to refresh all vaults upon startup, define a maximum file size limit for documents and attachments, and specify the timeout duration for HTTP requests.

<table><thead><tr><th width="299">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Sync all vaults (background)</strong></td><td>Synchronization ensures that any changes made to a vault, such as updating passwords or adding new sessions, are propagated across all connected devices and users in realtime.</td></tr><tr><td><strong>Auto refresh</strong></td><td>Select the time interval to automatically refresh the workspace.</td></tr><tr><td><strong>HTTP request timeout</strong></td><td>Select the time interval to the <em><strong>HTTP request timeout</strong></em>.</td></tr><tr><td><strong>Prompt refresh all vaults on startup</strong></td><td>Prompt refresh all vaults on startup.</td></tr><tr><td><strong>Maximum file size (MB)</strong></td><td>Choose the <em><strong>maximum file size (MB)</strong></em> to apply to <em><strong>documents</strong></em> and <em><strong>attachments</strong></em>.</td></tr><tr><td><strong>Authentication browser mode</strong></td><td>Select whether the authentication window is <em><strong>Embedded</strong></em> or <em><strong>External</strong></em> when launching the workspace.</td></tr></tbody></table>


# Devolutions Server

Devolutions Server allows to control access to privileged accounts and manage sessions through a secure solution. For more information, consult the [Devolutions Server web page](https://devolutions.net/server/).

### Highlights

* Highly secured server for your company.
* Shared connection and credentials with multiple users.
* Installed on-premises; can be deployed online.
* Support Windows authentication and Active Directory group integration.
* Optimized client and server side caching.

{% hint style="info" %}
Devolutions Server supports Microsoft SQL Server and Microsoft Azure SQL as a data store.
{% endhint %}

For more information, please consult these topics:

* [Devolutions Server installation](https://docs.devolutions.net/server/getting-started/installation/)
* [Devolutions Server security checklist](https://docs.devolutions.net/server/getting-started/security-checklist/)

### Configure the server workspace on client machines

Enter the workspace name and the URL for the host. Ensure to use the correct protocol if SSL is required by the server (https).

Alternatively, you can export the workspace information and then import the file in your client workstations as described [Import and export a workspace](https://docs.devolutions.net/rdm/workspaces/import-export/).

### Settings

{% tabs %}
{% tab title="Windows" %}

#### General

![](https://cdnweb.devolutions.net/docs/DVLS4169_2025_1.png)

<table data-header-hidden><thead><tr><th width="281"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Name</strong></td><td>Enter a name for the workspace.</td></tr><tr><td><strong>Host</strong></td><td>Enter the URL of the Devolutions Server instance.</td></tr><tr><td><strong>Username</strong></td><td>Enter the username to connect to the workspace.</td></tr><tr><td><strong>Always ask username</strong></td><td>Always ask for the username when connecting to the workspace.</td></tr><tr><td><strong>Use domain single sign-on (SSO)</strong></td><td>Use domain single sign-on (SSO) <a href="https://docs.devolutions.net/server/kb/how-to-articles/configure-windows-authentication/">if previously configured</a> in the Devolutions Server instance.</td></tr><tr><td><strong>Test connection</strong></td><td>Test the connection with Devolutions Server to validate the credentials.</td></tr><tr><td><strong>Use pre-authentication proxy</strong></td><td>Allow the user of a pre-authentication proxy as part of <a href="https://docs.devolutions.net/rdm/kb/how-to-articles/azure-pre-authentication-dvls-rdm/">Azure pre-authentication</a>.</td></tr><tr><td><strong>Use pre-authentication user for Devolutions Server connection</strong></td><td>Allow the user of a pre-authentication proxy user as part of <a href="https://docs.devolutions.net/rdm/kb/how-to-articles/azure-pre-authentication-dvls-rdm/">Azure pre-authentication</a> (if Microsoft authentication has been checked).</td></tr></tbody></table>

#### User vault

![](https://cdnweb.devolutions.net/docs/DVLS4170_2025_1.png)

<table data-header-hidden><thead><tr><th width="129"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Type</strong></td><td><p>Select the type of <a href="https://docs.devolutions.net/rdm/user-interface/navigation-pane/user-vault/">user vault</a> to use. Select between:</p><ul><li><strong>Default</strong>: use the default user vault, which is stored in the database.</li><li><strong>None</strong>: disable the user vault for all users.</li></ul></td></tr></tbody></table>

#### VPN

Open a VPN to access data prior to connecting to Devolutions Server.

![](https://cdnweb.devolutions.net/docs/DVLS4171_2025_1.png)

#### PowerShell

![](https://cdnweb.devolutions.net/docs/DVLS4172_2025_1.png)

<table data-header-hidden><thead><tr><th width="216"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Tenant ID</strong></td><td>Stores application Tenant ID for PowerShell to retrieve.</td></tr><tr><td><strong>Password</strong></td><td>Stores application password for PowerShell to retrieve.</td></tr></tbody></table>

#### Advanced

![](https://cdnweb.devolutions.net/docs/DVLS4173_2025_1.png)

<table data-header-hidden><thead><tr><th width="240"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Caching mode</strong></td><td>Determines how the entries will be reloaded in the workspace. For more information, please consult <a href="https://docs.devolutions.net/rdm/workspaces/caching/">Caching</a>. Note that the <strong>File</strong> mode is only available if <strong>Always ask username</strong> is checked in the <a href="#General">General tab</a>.</td></tr><tr><td><strong>Sync all vault(background)</strong></td><td>Synchronization ensures that any changes made to a vault , such as updating passwords or adding new sessions, are propagated across all connected devices and users in real-time.</td></tr><tr><td><strong>Ping online method</strong></td><td><p>Indicate the preferred ping online method. Select between:</p><ul><li>None</li><li>Web request</li></ul></td></tr><tr><td><strong>Popup license expiration</strong></td><td><p>Determine how the application advises of the license expiration. Select between:</p><ul><li>All</li><li>Only Administrator(s)</li><li>Disabled</li></ul></td></tr><tr><td><strong>Connection timeout</strong></td><td>Set a connection timeout delay for the Devolutions Server instance.</td></tr><tr><td><strong>Auto refresh</strong></td><td>Set the interval for the automatic refresh.</td></tr><tr><td><strong>Prompt for offline mode on startup</strong></td><td>Ask to use the workspace in offline mode when the user connects to the workspace.</td></tr><tr><td><strong>Automatically go offline on offline prompt</strong></td><td>Use the workspace in offline mode when the ping method does not respond.</td></tr><tr><td><strong>Client certificate authentication mode</strong></td><td>Determine how client certificates are to be authenticated.</td></tr><tr><td><strong>Manage cache</strong></td><td>Clear the output, analyze or delete the content of the Devolutions Server instance's cache.</td></tr></tbody></table>
{% endtab %}

{% tab title="macOS" %}

#### General

<table data-header-hidden><thead><tr><th width="203"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Name</strong></td><td>Enter a name for the workspace.</td></tr><tr><td><strong>Host</strong></td><td>Enter the URL of the Devolutions Server instance.</td></tr><tr><td><strong>Username</strong></td><td>Enter the username to connect to the workspace.</td></tr><tr><td><strong>Always ask username</strong></td><td>Always ask for the username when connecting to the workspace.</td></tr><tr><td><strong>Test connection</strong></td><td>Test the connection with Devolutions Server to validate the credentials.</td></tr></tbody></table>

#### User vault

<table data-header-hidden><thead><tr><th width="182"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td>Connection type</td><td><p>Select the type of <a href="https://docs.devolutions.net/rdm/user-interface/navigation-pane/user-vault/">user vault</a> to use. Select between:</p><ul><li><strong>Default</strong>: use the default user vault, which is stored in the database.</li><li><strong>None</strong>: disable the user vault for all users.</li></ul></td></tr></tbody></table>

#### VPN

Open a VPN to access data prior to connecting to Devolutions Server.

#### PowerShell

<table data-header-hidden><thead><tr><th width="219"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Tenant ID</strong></td><td>Stores application Tenant ID for PowerShell to retrieve.</td></tr><tr><td><strong>Password</strong></td><td>Stores application password for PowerShell to retrieve.</td></tr></tbody></table>

#### Advanced

<table data-header-hidden><thead><tr><th width="298"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Caching mode</strong></td><td>Determines how the entries will be reloaded in the workspace. For more information, please consult <a href="https://docs.devolutions.net/rdm/workspaces/caching/">Caching</a>.</td></tr><tr><td><strong>Prompt for offline mode on startup</strong></td><td>Ask to use the workspace in offline mode when the user connects to the workspace.</td></tr><tr><td><strong>Ping online method</strong></td><td><p>Indicate the preferred ping online method. Select between:</p><ul><li>None</li><li>Web request</li></ul></td></tr><tr><td><strong>Automatically go offline on offline prompt</strong></td><td>Use the workspace in offline mode when the ping method does not respond.</td></tr><tr><td><strong>Connection timeout</strong></td><td>Set a connection timeout delay for the Devolutions Server instance.</td></tr><tr><td><strong>Auto refresh</strong></td><td>Set the interval for the automatic refresh.</td></tr><tr><td><strong>Manage cache</strong></td><td>Clear the output, analyze or delete the content of the Devolutions Server instance's cache.</td></tr><tr><td><strong>Client certificate authentication mode</strong></td><td>Determine how client certificates are to be authenticated.</td></tr></tbody></table>
{% endtab %}
{% endtabs %}


# Local workspaces

Local workspaces are intended for single users who do not wish to implement advanced security features.

To assist with selecting the appropriate workspace, here is a set of concerns and the list of workspaces that can serve in such a context.

<table><thead><tr><th width="154">CONCERN</th><th width="91" align="center">SQLite</th><th width="85" align="center">XML</th></tr></thead><tbody><tr><td>Local</td><td align="center">X</td><td align="center">X</td></tr><tr><td>Works offline</td><td align="center">X</td><td align="center">X</td></tr><tr><td>Multi-user</td><td align="center"></td><td align="center"><em>Note</em></td></tr></tbody></table>

#### Note

The master XML file is managed by a single user and synchronized through Remote Desktop Manager to a website hosted according to specified configurations. Accessing the data via a URL ensures that other users have read-only permissions.


# Local workspace configuration checklist

Here is a checklist to help you get started with a local workspace in Remote Desktop Manager.

[Download](https://devolutions.net/remote-desktop-manager/download/) and install Remote Desktop Manager before proceeding.

{% tabs %}
{% tab title="Windows" %}
{% embed url="<https://youtu.be/FtSlp_TVAxE>" %}

| Checklist for local workspaces                                                                                                                                                                                                                                                 | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| <p>Step 1 - Register your license</p><ul><li><a href="https://docs.devolutions.net/rdm/installation/client/registration">Registration</a></li><li><a href="https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/">Free trials</a></li></ul> | It is to possible to obtain 14-day [trials](https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/) for the Devolutions platform or a full version of Remote Desktop Manager.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| Step 2 - Add your workspace                                                                                                                                                                                                                                                    | <p>Warning: When choosing any <a href="https://docs.devolutions.net/rdm/workspaces/create-a-workspace/">workspace</a> type that is not on-premises, you must consider the security of the data at rest and in transit. We strongly recommend that you further encrypt your data using a master key for file-based solutions or a <a href="https://docs.devolutions.net/rdm/commands/administration/security-providers/">security provider</a> for <a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/">Devolutions Server and Devolutions Cloud</a>. This ensures that only you can read the data.<br>Upon first launch, Remote Desktop Manager uses a local SQLite workspace. The different workspaces are explained in <a href="https://docs.devolutions.net/rdm/workspaces/">Workspaces</a>. For help selecting a workspace tailored to your needs, please see <a href="https://docs.devolutions.net/rdm/getting-started/checklist-enterprises/select-workspace-type/">Select a <em><strong>Native Team</strong></em> workspace</a>.</p> |
| Step 3 - Select your security provider                                                                                                                                                                                                                                         | Select your [security provider](https://docs.devolutions.net/rdm/commands/administration/security-providers/) before importing or creating any data in your database so nobody can read your entry configuration data, even when people have a direct access to your database.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| Step 4 - Create your folder structure                                                                                                                                                                                                                                          | Top level folders are at the foundation of a solid security structure. Your folder structure (folder entries) should represent your company structure. For example, you can create a folder for your Production team, one for your Staging team and one for your Testing team.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| Step 5 - Create your default settings                                                                                                                                                                                                                                          | In ***File*** – ***Settings***, you can set options for Remote Desktop Manager and create [default settings templates](https://docs.devolutions.net/rdm/commands/file/templates/default-settings/). Each entry type is supported and can have a default template defined to fit your requirements. After you configure the options, use the [custom installer](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/) to share the pre-configured version with your team.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| Step 6 - Create users                                                                                                                                                                                                                                                          | Remote Desktop Manager supports advanced [user management](https://docs.devolutions.net/rdm/commands/administration/user-management/). User accounts must be created manually by an administrator of the database.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| Step 7 - Create user groups                                                                                                                                                                                                                                                    | Create [user groups](https://docs.devolutions.net/rdm/commands/administration/user-groups-management/) to manage your security system. You can then assign users to user groups, making it easy to grant permissions to a set of users instead of having to manage permissions individually.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| Step 8 - Create entries                                                                                                                                                                                                                                                        | An [entry](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/) is how you save information about your sessions (e.g., RDP, SSH), credentials, websites, VPNs, synchronizers, and documents.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                     |
| Step 9 - Grant permissions                                                                                                                                                                                                                                                     | Once your users are created, you can then grant [permissions](https://docs.devolutions.net/rdm/user-groups-based-access-control/permissions/) for user group-based access control. The permissions granted on the folder can be inherited by each entry set under that folder.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| Step 10 - Import your data                                                                                                                                                                                                                                                     | The final step is to [import your data](https://docs.devolutions.net/rdm/commands/file/import/) into Remote Desktop Manager. You can import your sessions, logins, and contacts in a few steps.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| {% endtab %}                                                                                                                                                                                                                                                                   |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |

{% tab title="macOS" %}

| Checklist for local workspaces                                                                                                                                                                                                                                                 | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |
| <p>Step 1 - Register your license</p><ul><li><a href="https://docs.devolutions.net/rdm/installation/client/registration">Registration</a></li><li><a href="https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/">Free trials</a></li></ul> | It is to possible to obtain 14-day [trials](https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/) for the Devolutions platform or a full version of Remote Desktop Manager.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| Step 2 - Add your workspace and set up your Devolutions Account and master key                                                                                                                                                                                                 | <p>Warning: When choosing any <a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/">workspace type</a> that is not on-premises, you must consider the security of the data at rest and in transit. We strongly recommend that you further encrypt your data using a master key for file-based solutions or a <a href="https://docs.devolutions.net/rdm/commands/administration/security-providers/">security provider</a> for <a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/">advanced workspaces</a>. This ensures that only you can read the data.<br>Upon first launch, Remote Desktop Manager uses a local SQLite workspace. The different workspaces are explained in <a href="https://docs.devolutions.net/rdm/workspaces/">Workspaces</a>. For help selecting a workspace tailored to your needs, please see <a href="https://docs.devolutions.net/rdm/getting-started/checklist-individuals/select-workspace-type/">Select a <em><strong>Solo (Free)</strong></em> workspace type</a>.</p> |
| Step 3 - Set up a [file backup](https://docs.devolutions.net/rdm/commands/file/backup/backup-settings/?tab=macos)                                                                                                                                                              | <p>The <em><strong>File backup</strong></em> feature allows you to back up your SQLite or XML workspaces in a local file with a master key.</p><p>Set triggers to define when the backups should occur.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
| Step 4 - Create your default settings                                                                                                                                                                                                                                          | In ***File – Settings***, you can create, modify, or reset [default settings](https://docs.devolutions.net/rdm/commands/file/templates/default-settings/) for your templates. Each entry type is supported and can have a default template defined to fit your requirements.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| Step 5 - Create your folder structure                                                                                                                                                                                                                                          | Top level folders are at the foundation of a solid security structure. Your folder structure (folder entries) should represent your company structure.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| Step 6 - Import your data                                                                                                                                                                                                                                                      | The final step is to [import your data into Remote Desktop Manager](https://docs.devolutions.net/rdm/commands/file/import/). You can import your sessions, logins, and contacts in a few steps.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| {% endtab %}                                                                                                                                                                                                                                                                   |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
| {% endtabs %}                                                                                                                                                                                                                                                                  |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |


# SQLite

Remote Desktop Manager's SQLite workspace is ideal for single user and stand-alone situations. More powerful and more flexible than the XML file format, it also supports a few of the advanced workspace options like Logs and Attachments.

### Highlights

* Full connection log and attachments support.

Key points to consider:

* All passwords are encrypted by default by Remote Desktop Manager. You can specify a custom password to fully encrypt the content of the SQLite database.
* Password recovery is not possible, the data will be unrecoverable if you cannot authenticate. Please ensure you backup the password in a safe place.
* SQLite supports an unlimited number of simultaneous readers, but will only allow one writer at any instant in time. For this reason Remote Desktop Manager does not support sharing an SQLite workspace between several users by storing it on a network drive. If you want to share your data and work in a team environment with your colleagues, please use one of the [advanced workspaces](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/). Please consult [SQLite.org](https://www.sqlite.org/whentouse.html) for more information.

### Master key management

You can specify a master key to further encrypt your data. Specify it at creation time. If the workspace already exists, you can modify the master key in ***File – Manage master key***.

### Settings

{% tabs %}
{% tab title="Windows" %}

#### General

![](https://cdnweb.devolutions.net/docs/RDMW6094_2025_1.png)

<table><thead><tr><th width="215">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Name</strong></td><td>Name of the workspace.</td></tr><tr><td><strong>Database</strong></td><td>Indicate the filename of the SQLite database (.db).</td></tr><tr><td><strong>Set master key</strong></td><td>Add an additional layer of security by encrypting your workspace with a master key.</td></tr><tr><td><strong>Always ask master key</strong></td><td>Always prompts for the master key when connecting to the workspace.</td></tr><tr><td><strong>Multifactor</strong></td><td>Enable <a href="https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/">multifactor authentication</a> to access your workspace.</td></tr><tr><td><strong>Test Connection</strong></td><td>Test the current database path and password for connection.</td></tr></tbody></table>

#### Backup

![](https://cdnweb.devolutions.net/docs/RDMW6095_2025_1.png)

<table><thead><tr><th width="121">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Backup</strong></td><td><p>Select between:</p><ul><li>None: No backup of your workspace will be created.</li><li>File backup: Your backup will be saved to a chosen file.</li></ul></td></tr><tr><td><strong>Folder</strong></td><td>Select the folder in which you want the backup to be saved.</td></tr><tr><td><strong>Filename</strong></td><td>Specify the backup name.</td></tr><tr><td><strong>Master key</strong></td><td>Encrypt your backup with a master key.</td></tr></tbody></table>

Switch to the **Triggers** tab to define when the backups should occur.

<table><thead><tr><th width="250">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>On entry modification</strong></td><td>Create a backup each time you edit an entry in the workspace.</td></tr><tr><td><strong>Before switching workspace</strong></td><td>Backs up automatically when you switch from one workspace to another.</td></tr><tr><td><strong>On application close</strong></td><td>Create a backup whenever you close Remote Desktop Manager.</td></tr><tr><td><strong>Backup interval</strong></td><td>Schedule backups at a regular time interval (for example, every 10 minutes).</td></tr></tbody></table>

#### VPN

Open a VPN to access your data prior to connecting to your SQLite.

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW6097_2025_1.png" alt=""><figcaption></figcaption></figure>

<table><thead><tr><th width="185">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Type</strong></td><td>Determine when the VPN should be launched.</td></tr><tr><td><strong>RDM File</strong></td><td>Specify the path to a VPN configuration file.</td></tr><tr><td><strong>Override credentials</strong></td><td>Set custom credentials that will be used for the VPN connection.</td></tr></tbody></table>

#### Advanced

![](https://cdnweb.devolutions.net/docs/RDMW6098_2025_1.png)

<table><thead><tr><th width="224">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Auto refresh</strong></td><td>Set the interval for the automatic refresh.</td></tr><tr><td><strong>Disable reveal password</strong></td><td>Disable the reveal password feature when a user accesses this workspace.</td></tr><tr><td><strong>Disable caching</strong></td><td>Entries will be reloaded in Simple mode in the workspace. See <a href="https://docs.devolutions.net/rdm/workspaces/caching/">Caching</a> for more information.</td></tr><tr><td><strong>Command timeout</strong></td><td>Waiting time before a command timeout.</td></tr><tr><td><strong>Manage file</strong></td><td>Contain multiple SQLite commands to facilitate managing. You should usually only access these when our customer support teams demands it.</td></tr><tr><td><strong>More settings</strong></td><td>Use to directly modify the connection string value.</td></tr></tbody></table>
{% endtab %}

{% tab title="macOS" %}

#### Connection

<table><thead><tr><th width="195">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Name</td><td>Name of the workspace.</td></tr><tr><td>Database</td><td>Indicates the filename of the SQLite database (.db).</td></tr><tr><td>Password</td><td>Specify a password to further encrypt your workspace.</td></tr><tr><td>Secure with password</td><td>Secure the workspace with a password. This is used to encrypt the database content and it cannot be recovered if lost.</td></tr><tr><td>Always ask password</td><td>Always ask for the password when connecting to the workspace.</td></tr><tr><td>Two Factor</td><td>Enable the 2-Factor Authentication to access your workspace.</td></tr></tbody></table>

#### Backup

<table><thead><tr><th width="134">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Backup</td><td><p>Select between:</p><ul><li>None: No backup of your workspace will be created.</li><li>Save to file: Your backup will be saved to a chosen file but will not automatically do backup every 30 seconds.</li></ul></td></tr><tr><td>Backup name</td><td>Specify the backup name that will allow you to automatically save your sessions in a safe online storage space and restore them in the event of problems.</td></tr></tbody></table>

#### Advanced

<table><thead><tr><th width="210">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Auto refresh</td><td>Set the interval for the automatic refresh.</td></tr><tr><td>Command timeout</td><td>Waiting time before a command timeout.</td></tr><tr><td>Disable reveal password</td><td>Disable the reveal password feature when a user access this workspace.</td></tr><tr><td>Disable caching</td><td>Entries will be reload in Simple mode in the workspace. See <a href="https://docs.devolutions.net/rdm/workspaces/caching/">Caching Mode</a> for more information.</td></tr><tr><td>Advanced Settings</td><td>Use to directly modify the connection string value.</td></tr></tbody></table>

#### Maintenance

<table><thead><tr><th width="185">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Manage SQLite File</td><td>Manage all your SQLite file to analyse, vacuum, repair or delete them.</td></tr><tr><td>Vacuum</td><td>Used to compress and clean up the current database file.</td></tr></tbody></table>
{% endtab %}
{% endtabs %}


# XML

Remote Desktop Manager stores the workspace configuration directly in an XML file. You can configure an automatic refresh interval to keep the workspace synchronized across your devices.

While the XML file can be shared between multiple locations, this workspace type does not provide conflict management. If multiple users access and modify the same file, update conflicts and other synchronization issues may occur. For this reason, the XML workspace is intended for a single user working across multiple computers rather than for collaborative use between several users.

All passwords stored in the XML file are encrypted by default. For additional security, you can define a custom password (master key) to fully encrypt the file contents. Keep in mind that if the master key is lost, the data cannot be recovered. Make sure to store or back up the master key securely in a safe location.

### Settings

{% tabs %}
{% tab title="Windows" %}

#### General

![](https://cdnweb.devolutions.net/docs/RDMW6090_2025_1.png)

<table><thead><tr><th width="207">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Name</strong></td><td>Name of the workspace.</td></tr><tr><td><strong>Filename</strong></td><td>Specify the full path of the XML file used to save the data. Relative paths and environment variables can be used as well.</td></tr><tr><td><strong>Master key</strong></td><td>Add an additional layer of security by encrypting your workspace with a master key.</td></tr><tr><td><strong>Always ask master key</strong></td><td>Always prompts for the master key when connecting to the workspace.</td></tr></tbody></table>

#### Backup

![](https://cdnweb.devolutions.net/docs/RDMW6091_2025_1.png)

<table><thead><tr><th width="128">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Backup</strong></td><td><p>Select between:</p><ul><li>None: No backup of your workspace will be created.</li><li>File backup: Your backup will be saved to a chosen file.</li></ul></td></tr><tr><td><strong>Folder</strong></td><td>Select the folder in which you want the backup to be saved.</td></tr><tr><td><strong>Filename</strong></td><td>Specify the backup name.</td></tr><tr><td><strong>Master key</strong></td><td>Encrypt your backup with a master key.</td></tr></tbody></table>

Switch to the **Triggers** tab to define when the backups should occur.

<table><thead><tr><th width="249">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>On entry modification</strong></td><td>Creates a backup each time you edit an entry in the workspace.</td></tr><tr><td><strong>Before switching workspace</strong></td><td>Backs up automatically when you switch from one workspace to another.</td></tr><tr><td><strong>On application close</strong></td><td>Creates a backup whenever you close Remote Desktop Manager.</td></tr><tr><td><strong>Backup interval</strong></td><td>Schedules backups at a regular time interval (for example, every 10 minutes).</td></tr></tbody></table>

#### VPN

Open a VPN to access your data prior to connecting to your XML.

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW6092_2025_1.png" alt=""><figcaption></figcaption></figure>

<table><thead><tr><th width="188">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Type</strong></td><td>Determines when the VPN should be launched.</td></tr><tr><td><strong>RDM File</strong></td><td>Specifies the path to a Remote Desktop Manager VPN configuration file.</td></tr><tr><td><strong>Override credentials</strong></td><td>Sets custom credentials that will be used for the VPN connection.</td></tr></tbody></table>

#### Advanced

![](https://cdnweb.devolutions.net/docs/RDMW6093_2025_1.png)

<table><thead><tr><th width="240">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Auto refresh on file change</strong></td><td>Indicate if the application monitors the file changes to automatically refresh the workspace.</td></tr><tr><td><strong>Disable reveal password</strong></td><td>Disable the reveal password feature when a user accesses this workspace.</td></tr><tr><td><strong>Allow custom images</strong></td><td>This will enable the loading of any custom images in the tree view.</td></tr><tr><td><strong>Read-only</strong></td><td>Set the workspace in read-only. No new entry can be created, and the existing data cannot be edited.</td></tr></tbody></table>
{% endtab %}

{% tab title="macOS" %}

#### Connection

<table><thead><tr><th width="111">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Name</strong></td><td>Name of the workspace.</td></tr><tr><td><strong>Filename</strong></td><td>Specify the full path of the XML file used to save the data. Relative paths and environment variables can be used as well.</td></tr></tbody></table>

#### Backup

<table><thead><tr><th width="114">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Backup</td><td><p>Choose between:</p><ul><li><strong>None</strong>: No backup of your workspace will be created.</li><li><strong>File backup</strong>: Your backup will be saved to a chosen file.</li></ul></td></tr></tbody></table>

#### Advanced

<table><thead><tr><th width="232">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Auto refresh on file change</td><td>Indicate if the application monitor the file changes to automatically refresh the workspace.</td></tr><tr><td>Read-only</td><td>Set the workspace in read only. No new entry can be created and the existing data cannot be edited.</td></tr><tr><td>Disable reveal password</td><td>Disable the reveal password feature when a user accesses this workspace.</td></tr><tr><td>Always ask master key</td><td>Always ask the Master key before opening the workspace. This is used to encrypt the XML content and it could not be recovered if lost.</td></tr><tr><td>Master key</td><td>Enter the Master key that will be used before opening the workspace.</td></tr><tr><td>Allow custom images</td><td>This will enable the loading of any custom images in the tree view.</td></tr></tbody></table>
{% endtab %}
{% endtabs %}


# Alternative workspaces

Alternative workspaces are intended for teams planning to use CyberArk, Microsoft SQL Server or Microsoft Azure SQL as their workspace.

To assist with selecting the appropriate workspace, here is a set of concerns and the list of workspaces that can serve in such a context.

{% hint style="danger" %}
When choosing a non-on-premises workspace, it is important to account for the security of data both at rest and in transit. It is strongly recommended to further encrypt data using a master key for file-based solutions or a [security provider](https://docs.devolutions.net/rdm/commands/administration/security-providers/) for [advanced workspaces](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/), ensuring that only authorized parties can access the data.For enhanced security features such as encryption at rest and in transit, restricted database access, and [zero-knowledge encryption](https://blog.devolutions.net/2023/05/unraveling-zero-knowledge-and-zero-trust-concepts/), consider our [Native Team workspaces](https://docs.devolutions.net/rdm/getting-started/checklist-enterprises/select-workspace-type/).
{% endhint %}

<table><thead><tr><th width="334">Concern</th><th align="center">Microsoft SQL Server</th><th align="center">Microsoft Azure SQL</th></tr></thead><tbody><tr><td>Unaccessible database to end users</td><td align="center"><p>Note 1</p><p>Note 2</p></td><td align="center">Note 1</td></tr><tr><td>AD accounts used for authentication</td><td align="center">X</td><td align="center"></td></tr><tr><td>Data stored on-premises</td><td align="center">X</td><td align="center"></td></tr><tr><td>Activity logs</td><td align="center">X</td><td align="center">X</td></tr><tr><td>Data accessible globally</td><td align="center">Note 3</td><td align="center">X</td></tr><tr><td>Optional local cache of connections</td><td align="center">X</td><td align="center">X</td></tr></tbody></table>

#### Notes

**Note 1**

Administrators can create end-user accounts without sharing passwords by importing a locked workspace definition for each user. However, this process involves significant manual effort by the administrator.

**Note 2**

Integrated security is a Microsoft technology that allows access to an SQL Server instance without transmitting credentials, relying on the authentication token from the Windows environment. This allows users to connect directly to the database using other tools, but it should not be used if preventing direct database access is required.

Our SQL Server workspace provides a third authentication option, ***Custom (Devolutions)***, which allows user impersonation without revealing the credentials used to connect to the database. For more information, refer to [User management](https://docs.devolutions.net/rdm/commands/administration/user-management/).

**Note 3**

It is possible to expose a database to the Internet, but SSL/TLS encryption is necessary to secure the traffic and mitigate risks like DDoS attacks. Cloud services, such as Azure, prioritize this concern. The default firewall settings should block all traffic initially, with exceptions and rules added as needed. Additionally, open only the essential ports, add them to the exception list, and filter incoming requests based on their origin.


# Alternative workspace configuration checklist

Here is a checklist designed to help IT administrators install and configure Remote Desktop Manager for their team with an alternative workspace.

[Download](https://devolutions.net/remote-desktop-manager/download/) and install Remote Desktop Manager before proceeding.

{% tabs %}
{% tab title="Windows" %}

| Checklist for alternative workspaces                                                                                                                                                                                                                                           | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Step 1 - [Configure and create the SQL workspace](https://www.youtube.com/watch?v=BfFvtHJSzbs\&t=81s)                                                                                                                                                                          | <p>Upon first launch, Remote Desktop Manager prompts you to select a workspace. Devolutions integrates the following <a href="https://docs.devolutions.net/rdm/getting-started/checklist-small-teams/select-workspace-type/"><em><strong>Third-party Team</strong></em> workspaces</a>:</p><ul><li><a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-sql-server/">Microsoft SQL Server</a></li><li><a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/">Microsoft Azure SQL</a></li></ul><p><br>You need to enter general workspace information such as the name and the host.<br><br>For the first database user, create an SQL administrator account with the <em><strong>Database login mode</strong></em>. Then, create the database and set up initial parameters for the default vault</p>                                                                                                                                                                                                                               |
| [Overview of authentication and login types](https://www.youtube.com/watch?v=BfFvtHJSzbs\&t=174s)                                                                                                                                                                              | <p>Users will authenticate using the method of your choosing:</p><ul><li><em><strong>Database login</strong></em>: Uses an SQL login to directly access the SQL server. The first database administrative user is created using this method.</li><li><em><strong>Integrated Security (Active Directory)</strong></em>: Recommended for Azure SQL workspaces. Uses the active user’s Microsoft AD account.</li><li><a href="https://docs.devolutions.net/rdm/kb/how-to-articles/implement-custom-login-mode/"><em><strong>Custom login</strong></em></a>: Recommended for SQL Server workspaces. Allows for the creation of Remote Desktop Manager accounts for users to authenticate with, but prevents them from having direct access to the SQL database through an external tool.</li></ul>                                                                                                                                                                                                                                                                                                                                        |
| <p>Step 2 - Register your license</p><ul><li><a href="https://docs.devolutions.net/rdm/installation/client/registration">Registration</a></li><li><a href="https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/">Free trials</a></li></ul> | <p>It is to possible to obtain 14-day <a href="https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/">trials</a> for the Devolutions platform or a full version of Remote Desktop Manager.</p><p>You can enable the option to have licenses auto-assigned, so that when new users are created they automatically receive a license.</p><p>Assign a license to the administrator account previously created so that you can create more administrative accounts. This license can be freed up later on.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| Step 3 - [Create the "custom login" Remote Desktop Manager and SQL account](https://www.youtube.com/watch?v=BfFvtHJSzbs\&t=359s)                                                                                                                                               | Create a new administrative SQL user with just enough read/write permissions on the SQL side to accomplish what they need to do in Remote Desktop Manager without having complete control over the SQL server itself. Use the ***Database Authentication type*** for this account so it can create both a Remote Desktop Manager login and an SQL account login.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| Step 4 - [Create the administrator user account](https://www.youtube.com/watch?v=BfFvtHJSzbs\&t=412s)                                                                                                                                                                          | <p>Create the account that the administrator will use daily to access Remote Desktop Manager. Use the <em><strong>Custom (Devolutions) Authentication type</strong></em> for this account.<br><br>Once this daily account is created, you can update the workspace with the correct login information to reflect that this new administrative account is used instead of the first account.<br><br>It is now safe to delete the first database account and to unassign the license of the administrative SQL user.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| Step 5 - [Create remaining user accounts](https://www.youtube.com/watch?v=BfFvtHJSzbs\&t=514s)                                                                                                                                                                                 | Add all other users one by one using the ***Authentication type*** of your choice. See the [Overview of Authentication and Login Types](https://youtu.be/BfFvtHJSzbs\&t=174s) or [User Management](https://docs.devolutions.net/rdm/commands/administration/user-management/) for more information.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| Step 6 - [Create user groups](https://www.youtube.com/watch?v=BfFvtHJSzbs\&t=552s)                                                                                                                                                                                             | Create user groups and assign previously created users to those groups. Each user can be part of predefined permissions in user groups, which helps you manage who has access to which resources and what they can do with them without having to individually manage them.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| Step 7 - [Create vaults](https://www.youtube.com/watch?v=BfFvtHJSzbs\&t=602s)                                                                                                                                                                                                  | <p>In Remote Desktop Manager, data is stored in a hierarchy of folders and entries all within vaults. The number of vaults created and the way they are categorized is completely up to you, but we have seen great success in teams separating their content by departments, locations, and customer accounts.<br><br>All users have access to the default vault created after installing Remote Desktop Manager. You can change its configuration as well as <a href="https://docs.devolutions.net/rdm/commands/administration/vaults-overview/#create-a-vault">create other vaults</a>, then <a href="https://docs.devolutions.net/rdm/commands/administration/vaults-overview/#give-users-and-user-groups-access-to-a-vault">assign them users and user groups</a>.<br><br>Access all vaults using the vault selector in the <em><strong>navigation pane</strong></em>. Each user can also access their own <em><strong>user vault</strong></em>. This vault is only accessible to them and is a great place to store business-related entries for the user, such as alarm codes, user credentials, websites, documents, etc.</p> |
| Step 8 - [Assign permissions](https://www.youtube.com/watch?v=BfFvtHJSzbs\&t=700s)                                                                                                                                                                                             | <p><a href="https://docs.devolutions.net/rdm/user-groups-based-access-control/permissions/">Permissions</a> can be granted to users and user groups. They are set on the vault, folder, and entry levels.<br><br>The permissions granted on the folder can be inherited by each entry set under that folder.<br><br>It is possible to <a href="https://docs.devolutions.net/rdm/commands/administration/vault-settings/default-security-entries/">batch grant access</a> permissions and permission sets to users and user groups.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| Step 9 - [Add a security provider for encryption](https://www.youtube.com/watch?v=BfFvtHJSzbs\&t=933s)                                                                                                                                                                         | <p>Remote Desktop Manager encrypts all passwords and sensitive information with AES-256 encryption, but some organizations may require for the whole database to be encrypted.<br><br>The <a href="https://docs.devolutions.net/rdm/commands/administration/security-providers/"><em><strong>Security Provider</strong></em></a> is an additional level of encryption to the already-encrypted passwords and sensitive information. It can be configured using a passphrase, a certificate, or a keyfile. See our <a href="https://docs.devolutions.net/rdm/kb/knowledge-base/security-providers-best-practices/">Security providers best practices</a>.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| Step 10 - [Deploy to workstations](https://www.youtube.com/watch?v=BfFvtHJSzbs\&t=1072s)                                                                                                                                                                                       | <p>Deploy Remote Desktop Manager to your end users using the <a href="https://docs.devolutions.net/rdm/installation/client/custom-installer-service/">custom installer service</a>, which creates a customized MSI package that can be installed or deployed. It contains a fully packaged version of Remote Desktop Manager along with all of the workspace information required for a user to access the database.<br><br>The MSI can then be manually installed or silently pushed to workstations using a deployment tool.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| {% endtab %}                                                                                                                                                                                                                                                                   |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |

{% tab title="macOS" %}

| Checklist for alternative workspaces                                                                                                                                                                                                                                           | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Step 1 - Configure and create the SQL workspace                                                                                                                                                                                                                                | <p>Upon first launch, Remote Desktop Manager prompts you to select a workspace. Devolutions integrates the following <a href="https://docs.devolutions.net/rdm/getting-started/checklist-small-teams/select-workspace-type/"><em><strong>Third-party Team</strong></em> workspaces</a>:</p><ul><li><a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-sql-server/">Microsoft SQL Server</a></li><li><a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/">Microsoft Azure SQL</a></li></ul><p><br>You need to enter general workspace information such as the name and the host.<br><br>For the first database user, create an SQL administrator account with the <em><strong>Database login mode</strong></em>. Then, create the database and set up initial parameters for the default vault.</p>                                                                                                                                                                                                                              |
| Overview of authentication and login types                                                                                                                                                                                                                                     | <p>Users will authenticate using the method of your choosing:</p><ul><li><em><strong>Database login</strong></em>: Uses an SQL login to directly access the SQL server. The first database administrative user is created using this method.</li><li><em><strong>Integrated Security (Active Directory)</strong></em>: Recommended for Azure SQL workspaces. Uses the active user’s Microsoft AD account.</li><li><a href="https://docs.devolutions.net/rdm/kb/how-to-articles/implement-custom-login-mode/"><em><strong>Custom login</strong></em></a>: Recommended for SQL Server workspaces. Allows for the creation of Remote Desktop Manager accounts for users to authenticate with, but prevents them from having direct access to the SQL database through an external tool.</li></ul>                                                                                                                                                                                                                                                                                                                                        |
| <p>Step 2 - Register your license</p><ul><li><a href="https://docs.devolutions.net/rdm/installation/client/registration">Registration</a></li><li><a href="https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/">Free trials</a></li></ul> | <p>It is to possible to obtain 14-day <a href="https://docs.devolutions.net/rdm/support-resources/getting-started-packages/free-trials/">trials</a> for the Devolutions platform or a full version of Remote Desktop Manager.</p><p>You can enable the option to have licenses auto-assigned, so that when new users are created they automatically receive a license.</p><p>Assign a license to the administrator account previously created so that you can create more administrative accounts. This license can be freed up later on.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         |
| Step 3 - Create the "custom login" Remote Desktop Manager and SQL account                                                                                                                                                                                                      | Create a new administrative SQL user with just enough read/write permissions on the SQL side to accomplish what they need to do in Remote Desktop Manager without having complete control over the SQL server itself. Use the ***Database Authentication type*** for this account so it can create both a Remote Desktop Manager login and an SQL account login.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      |
| Step 4 - Create the administrator user account                                                                                                                                                                                                                                 | <p>Create the account that the administrator will use daily to access Remote Desktop Manager. Use the <em><strong>Custom (Devolutions) Authentication type</strong></em> for this account.<br><br>Once this daily account is created, you can update the workspace with the correct login information to reflect that this new administrative account is used instead of the first account.<br><br>It is now safe to delete the first database account and to unassign the license of the administrative SQL user.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| Step 5 - Create remaining user accounts                                                                                                                                                                                                                                        | Add all other users one by one using the ***Authentication type*** of your choice. See the [Overview of Authentication and Login Types](https://youtu.be/BfFvtHJSzbs\&t=174s) or [User Management](https://docs.devolutions.net/rdm/commands/administration/user-management/) for more information.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| Step 6 - Create user groups                                                                                                                                                                                                                                                    | Create user groups and assign previously created users to those groups. Each user can be part of predefined permissions in user groups, which helps you manage who has access to which resources and what they can do with them without having to individually manage them.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
| Step 7 - Create vaults                                                                                                                                                                                                                                                         | <p>In Remote Desktop Manager, data is stored in a hierarchy of folders and entries all within vaults. The number of vaults created and the way they are categorized is completely up to you, but we have seen great success in teams separating their content by departments, locations, and customer accounts.<br><br>All users have access to the default vault created after installing Remote Desktop Manager. You can change its configuration as well as <a href="https://docs.devolutions.net/rdm/commands/administration/vaults-overview/#create-a-vault">create other vaults</a>, then <a href="https://docs.devolutions.net/rdm/commands/administration/vaults-overview/#give-users-and-user-groups-access-to-a-vault">assign them users and user groups</a>.<br><br>Access all vaults using the vault selector in the <em><strong>navigation pane</strong></em>. Each user can also access their own <em><strong>user vault</strong></em>. This vault is only accessible to them and is a great place to store business-related entries for the user, such as alarm codes, user credentials, websites, documents, etc.</p> |
| Step 8 - Assign permissions                                                                                                                                                                                                                                                    | <p><a href="https://docs.devolutions.net/rdm/user-groups-based-access-control/permissions/">Permissions</a> can be granted to users and user groups. They are set on the vault, folder, and entry levels.<br><br>The permissions granted on the folder can be inherited by each entry set under that folder.<br><br>It is possible to <a href="https://docs.devolutions.net/rdm/commands/administration/vault-settings/default-security-entries/">batch grant access</a> permissions and permission sets to users and user groups.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
| Step 9 - Add a security provider for encryption                                                                                                                                                                                                                                | <p>Remote Desktop Manager encrypts all passwords and sensitive information with AES-256 encryption, but some organizations may require for the whole database to be encrypted.<br><br>The <a href="https://docs.devolutions.net/rdm/commands/administration/security-providers/"><em><strong>Security Provider</strong></em></a> is an additional level of encryption to the already-encrypted passwords and sensitive information. It can be configured using a passphrase, a certificate, or a keyfile. See our <a href="https://docs.devolutions.net/rdm/kb/knowledge-base/security-providers-best-practices/">Security providers best practices</a>.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| Step 10 - Deploy to workstations                                                                                                                                                                                                                                               | <p>Deploy Remote Desktop Manager to your end users using the <a href="https://docs.devolutions.net/rdm/installation/client/custom-installer-service/">custom installer service</a>, which creates a customized MSI package that can be installed or deployed. It contains a fully packaged version of Remote Desktop Manager along with all of the workspace information required for a user to access the database.<br><br>The MSI can then be manually installed or silently pushed to workstations using a deployment tool.</p>                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    |
| {% endtab %}                                                                                                                                                                                                                                                                   |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
| {% endtabs %}                                                                                                                                                                                                                                                                  |                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                       |


# Cyberark

The CyberArk workspace makes it possible to connect directly to your CyberArk and launch your sessions with ease, without the added complexity of an SQL Server workspace.

### Prerequisites

* Remote Desktop Manager Team edition, v2024.1 or later (purchased singly or as part of the [Privileged access management package](https://docs.devolutions.net/resources/getting-started-packages/privileged-access-management-package/))
* CyberArk version 14 or later
* [A Remote Desktop Manager Privileged access management package](https://docs.devolutions.net/rdm/support-resources/getting-started-packages/privileged-access-management-package/)

### Adding a new CyberArk workspace

1. Navigate to ***File – Workspaces – Add new workspace***.
2. Select ***CyberArk*** and click ***Add***.
3. Enter your CyberArk connection details.

![](https://cdnweb.devolutions.net/docs/docs_en_kb_KB6224.png)

<table><thead><tr><th width="239">SETTINGS</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Name</strong></td><td>A unique name for the workspace.</td></tr><tr><td><strong>Web services URL</strong></td><td>Your CyberArk PVWA host URL.</td></tr><tr><td><strong>Virtual directory</strong></td><td>Blank by default.</td></tr><tr><td><strong>Version</strong></td><td>Default (V12).</td></tr><tr><td><strong>Authentication mode</strong></td><td><p>Choose the method by which to authenticate between:</p><ul><li><strong>CyberArk</strong></li><li><strong>Windows</strong></li><li><strong>LDAP</strong></li><li><strong>SAML</strong></li><li><strong>Radius</strong></li><li><strong>PKI</strong></li><li><strong>PKIPN</strong></li></ul></td></tr><tr><td><strong>Authentication credentials</strong></td><td>This may be <strong>Custom</strong> (if you choose <strong>SAML</strong> as the authentication mode, credentials are not available) where you will enter a <strong>Username</strong> and <strong>Password</strong>, or <strong>My account settings PVWA</strong>.</td></tr></tbody></table>

4. Click on ***Add***. Once connected, click on a host or account to see all linked entries and connect as needed.

![](https://cdnweb.devolutions.net/docs/RDMW6002_2024_1.png)

#### First connection

On the first connection to CyberArk, Remote Desktop Manager will:

* Import a Platform called ***Devolutions Remote Desktop Manager*** (PlatformID: ***DevolutionsRDM***)
* Create a Safe (***RDM\_Settings***)
* Create an account (***DataSourceSettings***)

{% hint style="info" %}
Note: This assumes you have the rights to perform the steps above.
{% endhint %}

You will then be prompted to enter a ***CyberArk Integration Module license***. If you do not have one yet, you can [request a trial license](mailto:sales@devolutions.net?subject=Remote%20Desktop%20Manager%20Module%20CyberArk%20-%20CyberArk%20-%20Trial).

#### User

In CyberArk, you must manually grant read access to ***RDM\_Settings*** safe to everyone in the organization that you want to allow using the Remote Desktop Manager CyberArk workspace.

#### Administrator

***Administrators*** are defined as users that have ***Add Safe*** privileges. Administrators in Remote Desktop Manager can, respecting CyberArk permissions:

* Edit the Remote Desktop Manager workspace system settings
* Launch CyberArk PVWA directly.

### Using the CyberArk workspace

Now that you have your CyberArk workspace configured and authenticated, you can connect to hosts quickly and easily. There are two ways to connect to a host: starting from an account and selecting the host, or starting from a host and selecting the account. With this flexibility, choose the most efficient starting point for you.

#### Starting from an account

In addition to the connecting actions, you may choose to edit the ***Properties*** (admin account required) which directly opens the ***Account properties page*** from the CyberArk PVWA. You may also choose to create a new entry (administrator account required) in the Remote Desktop Manager CyberArk workspace which directly opens the ***New account*** page from the CyberArk PVWA. Finally, basic account details are shown in the ***Overview*** pane.

![](https://cdnweb.devolutions.net/docs/RDMW6003_2024_1.png)

There are three ways to connect to a host from an account view.

1. In the ***Overview – Machines view***, double-click on a ***Machine*** to connect to. This list is populated from the ***Suggested Remote Machines*** listed in the ***CyberArk PVWA Accounts – Accounts View – (account) – Details screen***.
2. Click the ***Connect*** button to display a list of machines to connect to. Depending on your CyberArk account settings you are shown either of the following windows. The first option displays if you do not have the ***Limit access to these machines only*** option enabled within the ***Account – Account Properties*** screen within the CyberArk PVWA. If you have this option enabled, then the second window displays as a drop-down with the list populated from the ***Suggested Remote Machines*** on the ***Account Properties*** page.

You are shown two panes, a ***Host field*** to pick or manually enter the host, or an Remote Desktop Manager vault view of all available hosts to choose from.

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW6004_2024_1.png" alt=""><figcaption></figcaption></figure>

With the ***Limit access to these machines only*** option checked in CyberArk PVWA for an account, show only the allowed hosts to connect to.

![](https://cdnweb.devolutions.net/docs/RDMW6005_2024_1.png)

3. Click the Connect to ***Host*** button to display a list of machines to connect to. This option bypasses PSM (not recommended), and is only shown if the ***System Settings – General – Allow to connect to host*** option is checked. The shown windows reflect the same as in the ***Connect action***, only bypassing PSM.

#### Starting from a machine

Like an account, you can connect to a host through the connect actions, but here you can only create a new entry (administrator account required) in the Remote Desktop Manager CyberArk workspace which directly opens the ***New account*** page from the CyberArk PVWA.

![](https://cdnweb.devolutions.net/docs/RDMW6006_2024_1.png)

Similar to an account, there are three ways to connect to a host from the machine view.

1. In the ***Overview view***, double-click on an ***Account*** to connect to a host with. This list is populated by filtering all accounts shown in the Remote Desktop Manager CyberArk workspace by their ***Suggested Remote Machines*** to create the list of available accounts.
2. Click the ***Connect*** button to display a list of accounts to connect as. The ***Account*** drop-down reflects the same list as shown in the ***Overview***, while you may use the Remote Desktop Manager CyberArk workspace vault view to connect as a different account.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMW6007_2024_1.png" alt=""><figcaption></figcaption></figure>
3. Click the ***Connect to Host*** button to display a list of accounts to connect as. This option bypasses PSM (not recommended), and is only shown if the ***System Settings – General – Allow to connect to host*** option is checked. The shown windows reflect the same as in the ***Connect*** action, only bypassing PSM.

### Workspace settings

If you have connected using an administrator account to your CyberArk workspace, on the Remote Desktop Manager ***Administration*** tab, you are shown three additional options: ***Licenses***, ***System settings***, and a direct ***CyberArk PVWA button***.

![](https://cdnweb.devolutions.net/docs/RDMW6008_2024_1.png)

### Licenses

Here, you have the option to add, edit, or remove a PAM package which is required for a CyberArk workspace in Remote Desktop Manager free or team edition.

{% hint style="info" %}
This license is stored within the ***CyberArk safe (RDM\_Settings)*** created from the workspace initialization step.
{% endhint %}

![](https://cdnweb.devolutions.net/docs/RDMW6009_2024_1.png)

### System settings

If you open the ***System settings***, you are shown three different sections: ***General***, ***PVWA***, and ***System message***. Since the CyberArk workspace is a specialized workspace, many traditional Remote Desktop Manager workspace options are not available.

![](https://cdnweb.devolutions.net/docs/RDMW6010_2024_1.png)

#### General

<table><thead><tr><th width="223">Setting</th><th>Description</th></tr></thead><tbody><tr><td><strong>Auto refresh</strong></td><td>Periodically refresh the data in the display.</td></tr><tr><td><strong>Open sessions externally</strong></td><td>Launch an external window instead of the default embedded view.</td></tr><tr><td><strong>Allow connect to host</strong></td><td>Should the Connect to Host button be displayed, which is a direct connection to a host, bypassing CyberArk PSM (not recommended).</td></tr><tr><td><strong>Ask for reason</strong></td><td>Should a prompt be shown to ask for a reason on each connection.</td></tr><tr><td><strong>Ask for ticket number</strong></td><td>Should a prompt be shown to ask for a ticket number on each connection.</td></tr><tr><td><strong>Ticketing system</strong></td><td>The URL link to a ticketing system.</td></tr><tr><td><strong>Username format</strong></td><td>The username format used to authenticate to hosts.</td></tr><tr><td><strong>Domain search method</strong></td><td>Specify where to locate a user domain to authenticate to hosts.</td></tr><tr><td><strong>Domain field</strong></td><td>If field is chosen for the domain search method, what field to look for the users domain information.</td></tr></tbody></table>

#### PVWA

<table><thead><tr><th width="278">Setting</th><th>Description</th></tr></thead><tbody><tr><td><strong>Allow direct connection (PVWA)</strong></td><td>This option controls whether to show the Connect action.</td></tr><tr><td><strong>Override RDP Settings</strong></td><td>Force an override of specific RDP settings for hosts across the entire workspace.</td></tr></tbody></table>

#### System message

Here, set a message to be displayed on open of the Remote Desktop Manager CyberArk workspace or whenever the message is changed.

![](https://cdnweb.devolutions.net/docs/RDMW6011_2024_1.png)

### Troubleshooting

For troubleshooting CyberArk workspace issues, refer to [CyberArk workspace issues](https://docs.devolutions.net/rdm/kb/troubleshooting-articles/cyberark-workspace-issues) or contact our [customer support team](mailto:service@devolutions.net) for assistance.

#### See also

* [Devolutions Academy - Integrating CyberArk with Remote Desktop Manager](https://academy.devolutions.net/student/path/2134631/activity/3125180)


# Microsoft Azure SQL

With a Microsoft Azure SQL workspace, Remote Desktop Manager uses the Microsoft cloud platform to save and manage entries.

The following features are also supported:

* Always on availability group
* Clustering
* Log shipping
* Database mirroring

### Minimum requirement for an Azure SQL database for Remote Desktop Manager

Microsoft Azure SQL offers different service tier in its purchase model for DTUS. We recommend at minimum a Standard tier package S0 for 5 users and more. Visit their website for more information.

### Highlights

* Supports [user management](https://docs.devolutions.net/rdm/commands/administration/user-management/) with a superior security model.
* Supports [offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/) for when the server or network is unavailable.
* Supports entry logs and attachments.

{% hint style="danger" %}
A proper database backup strategy should be implemented to prevent possible data loss.
{% endhint %}

### Configuration

Consult [Configure Azure SQL](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/configure/) for more information on the configuration.

### Settings

{% tabs %}
{% tab title="Windows" %}

#### General

![](https://cdnweb.devolutions.net/docs/RDMW6087_2024_2.png)

<table data-header-hidden><thead><tr><th width="208"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td>Name</td><td>Enter a name for the workspace.</td></tr><tr><td>Host</td><td>Enter the server hostname or IP address.</td></tr><tr><td>Login mode</td><td><p>Specify the authentication mode to use. Select between:</p><ul><li><strong>Database login</strong></li><li><strong>Custom login</strong></li><li><strong>Active Directory Password</strong></li><li><strong>Active Directory Integrated</strong></li><li><strong>Active Directory Interactive (with MFA support)</strong></li></ul></td></tr><tr><td>Username</td><td>Enter the username to access the Azure SQL database.</td></tr><tr><td>Password</td><td>Enter the password to access the Azure SQL database.</td></tr><tr><td>Always ask password</td><td>Prompt for the password when a user connects to the workspace.</td></tr><tr><td>Allow change username</td><td>Allow the username to be edited when connecting to the workspace (only with <strong>Always ask password</strong> enabled).</td></tr><tr><td>Database</td><td>Enter the name of the Azure SQL database.</td></tr><tr><td>Test Database</td><td>Test the connection with the database to validate if the proper information has been provided.</td></tr></tbody></table>

#### Settings

![](https://cdnweb.devolutions.net/docs/RDMW6088_2024_2.png)

<table data-header-hidden><thead><tr><th width="207"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td>Ping online method</td><td><p>Indicate the preferred ping online method. Select between:</p><ul><li>None</li><li>Ping</li><li>Port Scan</li></ul></td></tr><tr><td>Automatically go offline on offline prompt</td><td>Use the workspace in offline mode when the ping method does not respond.</td></tr></tbody></table>

#### Upgrade

![](https://cdnweb.devolutions.net/docs/RDMW6092_2024_2.png)

<table data-header-hidden><thead><tr><th width="220"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td>Test host</td><td>Check the connection to the database.</td></tr><tr><td>Create Database</td><td>Create the database on the SQL server to use Remote Desktop Manager.</td></tr><tr><td>Update Database</td><td>Update the database on the SQL server, if required to use Remote Desktop Manager.</td></tr><tr><td>Validate database</td><td>Validate the content of the database.</td></tr><tr><td>Test Database</td><td>Test the connection with the database to validate if the proper information has been provided.</td></tr><tr><td>Email Schema to Support</td><td>Send your schema to our customer support team.</td></tr></tbody></table>

#### VPN

Open a VPN to access your data prior to connecting to your Microsoft Azure SQL database.

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW6090_2024_2.png" alt=""><figcaption></figcaption></figure>

<table data-header-hidden><thead><tr><th width="209"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td>Type</td><td>Select between <em><strong>None</strong></em> or <em><strong>On first connect</strong></em>.</td></tr><tr><td>RDM File</td><td>Open a <em><strong>VPN entry type</strong></em> from a <em><strong>RDM file</strong></em> before connecting to the workspace.</td></tr><tr><td>Override credentials</td><td>Override credentials such as <em><strong>Username, Domain</strong></em>, and <em><strong>Password</strong></em>.</td></tr></tbody></table>

#### Advanced

![](https://cdnweb.devolutions.net/docs/RDMW6001_2024_3.png)

<table data-header-hidden><thead><tr><th width="246"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td>Caching mode</td><td>Determines how the entries will be reloaded in the workspace. For more information, please consult <a href="https://docs.devolutions.net/rdm/workspaces/caching/">Caching</a>.</td></tr><tr><td>Sync all vaults (background)</td><td>Synchronization ensures that any changes made to a vault , such as updating passwords or adding new sessions, are propagated across all connected devices and users in real-time.</td></tr><tr><td>Trust certificate</td><td>Set how the workspace handles certificates.</td></tr><tr><td>Connection timeout</td><td>Set the delay of the connection timeout.</td></tr><tr><td>Command timeout</td><td>Set the delay of the command timeout.</td></tr><tr><td>Auto refresh</td><td>Set the interval for the automatic refresh.</td></tr><tr><td>Prompt for offline mode on startup</td><td>Ask to use the workspace in offline mode when a user connects to the workspace.</td></tr><tr><td>Allow beta database upgrade</td><td>Allow beta upgrade of the database (when using a beta version of Remote Desktop Manager).</td></tr><tr><td>Manage Cache</td><td>Manage the workspace cache. On large workspaces, caching is a must and will increase performance significantly.</td></tr><tr><td>More Settings</td><td>Edit the connection string values directly.</td></tr></tbody></table>
{% endtab %}

{% tab title="macOS" %}
{% hint style="danger" %}
Microsoft Azure SQL is a deprecated workspace for Remote Desktop Manager macOS.
{% endhint %}

#### General

<table><thead><tr><th width="205">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Name</td><td>Enter a name for the workspace.</td></tr><tr><td>Host</td><td>Enter the server hostname or IP address.</td></tr><tr><td>Login mode</td><td>Specify the authentication mode to use.</td></tr><tr><td>Username</td><td>Enter the username to access the Azure SQL database.</td></tr><tr><td>Password</td><td>Enter the password to access the Azure SQL database.</td></tr><tr><td>Always ask password</td><td>Prompt for the password when a user connects to the workspace.</td></tr><tr><td>Database</td><td>Enter the name of the Azure SQL database.</td></tr><tr><td>Two factor</td><td>Enable <a href="https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/">multifactor authentication</a>.</td></tr><tr><td>Test Database</td><td>Test the connection with the database to validate if the proper information has been provided.</td></tr></tbody></table>

#### Settings

<table><thead><tr><th width="188">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Auto refresh</td><td>Set the automatic refresh interval.</td></tr><tr><td>Ping online method</td><td><p>Indicate the preferred ping online method. Select between:</p><ul><li>None</li><li>Port Scan</li></ul></td></tr><tr><td>Auto go offline</td><td>Use the workspace in offline mode when the ping method does not respond.</td></tr></tbody></table>

#### User vault

<table><thead><tr><th width="113">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Type</td><td><p>Select the type of user vault to use. Select between:</p><ul><li><strong>Default</strong>: use the default user vault, which is stored in the database.</li><li><strong>None</strong>: disable the user vault for all users.</li></ul></td></tr></tbody></table>

#### Upgrade

<table><thead><tr><th width="225">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Create Database</td><td>Create the database on the SQL server to use Remote Desktop Manager.</td></tr><tr><td>Update Database</td><td>Update the database on the SQL server, if required to use Remote Desktop Manager.</td></tr><tr><td>Test Database</td><td>Test the connection with the database to validate if the proper information has been provided.</td></tr><tr><td>Email Schema to Support</td><td>Send your schema to our customer support team.</td></tr></tbody></table>

#### VPN

Open a VPN to access your data prior to connecting to your Microsoft Azure SQL database.

#### Advanced

<table><thead><tr><th width="198">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Caching mode</td><td>Determines how the entries will be reloaded in the workspace. For more information, please consult <a href="https://docs.devolutions.net/rdm/workspaces/caching/">Caching</a>.</td></tr><tr><td>Connection timeout</td><td>Set the delay of the connection timeout.</td></tr><tr><td>Command timeout</td><td>Set the delay of the command timeout.</td></tr><tr><td>Allow beta database upgrade</td><td>Allow beta upgrade of the database (when using a beta version of Remote Desktop Manager).</td></tr><tr><td>Manage Cache</td><td>Manage the workspace cache. On large workspaces caching is a must and will increase performance significantly.</td></tr><tr><td>Advanced Settings</td><td>Edit the connection string values directly.</td></tr></tbody></table>
{% endtab %}
{% endtabs %}


# Configure a Microsoft Azure SQL workspace

1. Make sure that you have a valid Microsoft Azure SQL subscription to be able to create your database.
2. Follow the steps in [Create a workspace](https://docs.devolutions.net/rdm/workspaces/create-a-workspace/). On ***Step 4***, after having configured the connection settings but before testing the server or otherwise verifying the connection, continue with the steps below.
3. Select the ***Upgrade*** tab and click the ***Create Database*** button. If the database is already created on the Microsoft Azure SQL Server, click the ***Update Database*** button to add the appropriate tables to the database.
4. Once the database is created, create an administrator account for the database via the ***Administration – User Management*** menu.

{% hint style="info" %}
If your database was created using a Super User (example: SA), we recommend that you keep this user only for the creation of the database and/or for the upgrade of the database. A Remote Desktop Manager administrator account must first be created, and then users must be created with this Remote Desktop Manager administrator account.
{% endhint %}

5. Connect on the Microsoft Azure SQL database with the Remote Desktop Manager administrator account. To do so, edit the workspace used to create the database and change the login information for the administrator account that you have created.

The Microsoft Azure SQL workspace is now correctly configured.


# Enable Entra ID authentication

***


# Configure Active Directory Interactive with MFA support in Remote Desktop Manager

**Active Directory Interactive (with MFA support)** allows you to authenticate to your [Microsoft Azure SQL](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/) workspace using your Office 365 credentials with multi-factor authentication (MFA).

{% hint style="danger" %}
When creating Azure SQL Active Directory users, you must be signed in with an Entra ID account. If not, the operation will fail and an error message will be displayed.
{% endhint %}

Use the server’s defined Entra ID administrator account to create your first Remote Desktop Manager administrator user. Once created, you can use this new account to create additional ones.

### Setup

![](https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2180.png)

1. In Remote Desktop Manager, go to ***File*** – ***Workspaces*** and click on ***Add a new workspace***.
2. Select the ***Microsoft Azure SQL*** workspace type.
3. Specify the ***Name*** and ***Host*** of your workspace.
4. In the ***Login mode*** drop-down menu, select ***Active Directory Interactive (with MFA support)***.
5. In the ***Username*** field, paste the ***Active Directory admin*** email you created in Microsoft Azure SQL Database.

On the first connection, the username must be that of the Entra ID administrator, as defined in [Configure the Entra ID administrator](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/enable-azure-active-directory-authentication/configure-admin/). Once additional AD users are added in Remote Desktop Manager, they will be able to connect as well.

{% hint style="warning" %}
If you receive the error message “Unable to connect to the database! Login failed for user '\<token-identified principal>'.“ , verify that the username is spelled correctly.
{% endhint %}

6. Enter the name of the ***Database*** you want to authenticate to.
7. Click ***Add***.

When you choose ***Active Directory Interactive (with MFA support)***, Remote Desktop Manager has no control over the login prompts. The authentication request is sent to the Microsoft library, and all subsequent prompts are handled entirely by Microsoft.

Here are some considerations:

* Have any conditional access policies been added or modified recently that could explain a change in behavior?
* If you're using an Entra ID-joined machine, you might try using Active Directory Integrated to see if it provides a smoother experience.


# Configure an Entra ID user

Follow the steps below to configure an Entra ID user in Remote Desktop Manager Windows.

1. In Remote Desktop Manager, navigate to the Microsoft Azure SQL workspace for which you want to configure a user.
2. In ***Administration – Users***, click on the ***Add user*** button.

   ![](https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2151.png)
3. In the ***Authentication type*** drop-down list, select ***Microsoft***. If ***Microsoft*** is not available in the ***Authentication type*** drop-down list, verify that all steps in [Enable SQL Azure with Entra ID with MFA](https://docs.devolutions.net/rdm/kb/how-to-articles/enable-sql-azure-ad-mfa/) have been completed.
4. In the ***Username*** field, enter the email of the user.

{% hint style="info" %}
The option ***Is guest/federated user*** next to the ***Domain*** field should only be enabled in rare and special cases where the account is guest or federated. If that is the case, you will be required to enter a full domain that should resemble this: azuresubscriptionprefix.onmicrosoft.com. The domain address only needs to be entered when configuring users. Users can log in using their own credentials afterwards.
{% endhint %}

5. Click ***OK*** when done.

If you do not receive the MFA prompt, please verify your Azure logs in ***Authentications Details – Result detail***. We currently have no way to force an MFA prompt on registered devices. If ***MFA requirement was skipped due to registered device*** appears, that is why in that case you are not getting the MFA prompt.


# Configure the Entra ID administrator

To enable SQL Server Entra ID Authentication, you must first configure the Entra ID admin of the server.

{% hint style="info" %}
It may take a few minutes for this change to propagate. You might experience a time delay before being able to connect with this Active Directory account.
{% endhint %}

{% hint style="success" %}
You can use an existing Microsoft Azure account if you already have one created. It is not necessary to create another to perform the following steps.
{% endhint %}

1. As shown in the ***Overview*** tab, the ***Active Directory admin*** is set to ***Not configured***.

   <figure><img src="https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2212.png" alt=""><figcaption></figcaption></figure>
2. Click on ***Active Directory admin*** under ***Settings*** in the left menu.

   <figure><img src="https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2213.png" alt=""><figcaption></figcaption></figure>
3. Click on ***Set admin*** to search for the admin.

   <figure><img src="https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2214.png" alt=""><figcaption></figcaption></figure>
4. Type the admin name in the ***Search*** field. Click on the admin in the list provided and then ***Select***.

   <figure><img src="https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2215.png" alt=""><figcaption></figcaption></figure>
5. To finish the process, click on ***Save***.

   <figure><img src="https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2216.png" alt=""><figcaption></figcaption></figure>
6. Copy the ***Active Directory admin*** email: it is essential for the next steps.


# Create an Entra ID app registration

{% hint style="info" %}
This step is optional and not required if your Remote Desktop Manager version is 2022.1 and later.
{% endhint %}

To use the Active Directory Interactive (with MFA support) authentication method in Remote Desktop Manager, a new app registration needs to be registered in the Microsoft Azure SQL console (Entra ID) with the appropriate API permissions.

1. Login on [Azure Portal](https://portal.azure.com/).
2. In the Entra ID section, select ***App registrations*** and then ***New registration***.
3. Configure the ***Name***.
4. Select the ***Supported account types***.
5. Configure the ***Redirect URI*** as indicated below and click ***Register***.

{% hint style="info" %}
The ***Redirect URI*** setting MUST be configured ***Public client/native (mobile & desktop)***.
{% endhint %}

{% hint style="info" %}
In our example the ***Redirect URI*** is set to <https://mycompany.com>, but we suggest you personalize it to the domain of your company home page. This will be necessary in the authentication step of [Configure Remote Desktop Manager Active Directory Interactive (with MFA)](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/enable-azure-active-directory-authentication/configure-rdm-older-version-ad-interactive-mfa/).
{% endhint %}

![](https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2232.png)

6. Select ***APIs my organization uses***, then type Azure and select ***Azure SQL Database***.
7. Select Delegated permissions – user\_impersonation and click ***Add permissions***.
8. The ***API permissions*** should look like this. You will see the new permission we just added and the preexisting Microsoft Graph.
9. Optional step: Click on the ***Authentication*** section and switch to ***Yes***, if you desire the ***Integrated Windows Authentification (IWA)*** option.
10. Your Entra ID App Registration is now completed.
11. Copy the ***App Registration's Application (client) ID*** needed in Remote Desktop Manager in the next step.


# Microsoft SQL Server

Remote Desktop Manager leverages Microsoft SQL Server as an advanced workspace to store and manage entries.

Supported Microsoft SQL Server:

* Microsoft SQL Server 2017/[2019](https://www.microsoft.com/en-us/sql-server/sql-server-2019)/[2022](https://www.microsoft.com/en-us/sql-server/sql-server-2022)/2025 (including Express edition. See [limitations](https://learn.microsoft.com/en-us/sql/sql-server/editions-and-components-of-sql-server-2019?view=sql-server-ver16#Cross-BoxScaleLimits).)

The following features are also supported:

* Always on availability group
* Clustering
* Log shipping
* Database mirroring

### Highlights

* Supports user management with a superior security model.
* Supports the [offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/) for when the server or network is unavailable.
* Supports full entry logs and attachments.
* Supports vaults to organize thousands of entries.

{% hint style="danger" %}
Key points to consider:- A proper database backup strategy should be implemented to prevent possible data loss.

* Depending on the recovery model of the underlying database, some maintenance operations may have to be scheduled to run regularly to maintain the health of the database.
* Using either Database Login or Integrated Security is inherently less secure because it means that the end user can connect directly to the database using any tool available. We do have table and column level security, but security conscious organizations will consider this unacceptable. It is recommended to use our Custom login model.
* Creating contained database users as mentioned in Microsoft's Contained Databases is the supported method with SQL always on availability groups.
  {% endhint %}

### Configuration

Consult [Configure SQL server](https://docs.devolutions.net/rdm/getting-started/workspaces/workspace-types/alternative-workspaces/microsoft-sql-server/configure-a-microsoft-sql-server-workspace) for more information on the configuration.

### Settings

{% tabs %}
{% tab title="Windows" %}

#### General

![](https://cdnweb.devolutions.net/docs/RDMW4264_2025_1.png)

<table><thead><tr><th width="214">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Name</strong></td><td>Enter a name for the workspace.</td></tr><tr><td><strong>Host</strong></td><td>Enter the server hostname or IP address.</td></tr><tr><td><strong>Login mode</strong></td><td><p>Specify the authentication mode to use. Select between:</p><ul><li><strong>Database login</strong></li><li><strong>Integrated security (Active Directory)</strong></li><li><strong>Custom login</strong></li></ul></td></tr><tr><td><strong>Username</strong></td><td>Enter the username to access the SQL server.</td></tr><tr><td><strong>Password</strong></td><td>Enter the password to access the SQL server.</td></tr><tr><td><strong>Always ask password</strong></td><td>Prompt for the password when a user connects to the workspace.</td></tr><tr><td><strong>Allow change username</strong></td><td>Allow the username to be edited when connecting to the workspace (only with <strong>Always ask password</strong> enabled).</td></tr><tr><td><strong>Database</strong></td><td>Name of the database on the SQL server for the utilization of Remote Desktop Manager.</td></tr><tr><td><strong>Test host</strong></td><td>Test the connection with the host to validate if the proper information has been provided.</td></tr><tr><td><strong>Test database</strong></td><td>Test the connection with the database to validate if the proper information has been provided.</td></tr></tbody></table>

#### Settings

![](https://cdnweb.devolutions.net/docs/RDMW4265_2025_1.png)

<table><thead><tr><th width="227">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Ping online method</strong></td><td><p>Indicate the preferred ping online method. Select between:</p><ul><li>None</li><li>Ping</li><li>Port scan</li></ul></td></tr><tr><td><strong>Automatically go offline on offline prompt</strong></td><td>Use the workspace in offline mode when the ping method does not respond.</td></tr></tbody></table>

#### Upgrade

![](https://cdnweb.devolutions.net/docs/RDMW4266_2025_1.png)

<table><thead><tr><th width="222">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Test host</strong></td><td>Test the connection to the host to validate if the proper information has been provided.</td></tr><tr><td><strong>Create database</strong></td><td>Create the database on the SQL server to use Remote Desktop Manager.</td></tr><tr><td><strong>Update database</strong></td><td>Update the database on the SQL server, if required to use Remote Desktop Manager.</td></tr><tr><td><strong>Validate database</strong></td><td>Validate the content of the database.</td></tr><tr><td><strong>Test database</strong></td><td>Test the connection with the database to validate if the proper information has been provided.</td></tr><tr><td><strong>Email schema to support</strong></td><td>Send your schema to our customer support team.</td></tr><tr><td><strong>View upgrade script</strong></td><td>If you wish to process database upgrade by hand instead of automatically you may use the upgrade script to do so.</td></tr></tbody></table>

#### User vault

![](https://cdnweb.devolutions.net/docs/RDMW4267_2025_1.png)

<table><thead><tr><th width="174">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Connection type</strong></td><td><p>Select the type of user vault to use. Select between:</p><ul><li>Default: use the default user vault, which is stored in the database.</li><li>None: disable the user vault for all users.</li></ul></td></tr></tbody></table>

#### VPN

![](https://cdnweb.devolutions.net/docs/RDMW4268_2025_1.png)

<table><thead><tr><th width="204">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Type</strong></td><td><p>Select between:</p><ul><li><strong>None</strong></li><li><strong>On first connect</strong></li><li><strong>Connect if unable to ping/port scan</strong></li></ul></td></tr><tr><td><strong>RDM file</strong></td><td>Open a <strong>VPN entry type</strong> from a <strong>RDM file</strong> before connecting to the workspace.</td></tr><tr><td><strong>Override credentials</strong></td><td>Override credentials such as <strong>Username, Domain</strong>, and <strong>Password</strong>.</td></tr></tbody></table>

#### Advanced

![](https://cdnweb.devolutions.net/docs/RDMW4269_2025_1.png)

<table><thead><tr><th width="262">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Caching mode</strong></td><td>Determines how the entries will be reloaded in the workspace. For more information, please consult <a href="https://docs.devolutions.net/rdm/workspaces/caching/">Caching</a>.</td></tr><tr><td><strong>Sync all vaults (background)</strong></td><td>Synchronization ensures that any changes made to a vault, such as updating passwords or adding new sessions, are propagated across all connected devices and users in real-time.</td></tr><tr><td><strong>Trust certificate</strong></td><td>Set how the workspace handles certificates.</td></tr><tr><td><strong>Connection timeout</strong></td><td>Waiting time before a connection timeout.</td></tr><tr><td><strong>Command timeout</strong></td><td>Waiting time before a command timeout.</td></tr><tr><td><strong>Auto refresh</strong></td><td>Set the interval for the automatic refresh.</td></tr><tr><td><strong>Prompt for offline mode on startup</strong></td><td>Ask to use the workspace in offline mode when the user connects to the workspace.</td></tr><tr><td><strong>Allow beta database upgrade</strong></td><td>Allow beta upgrade of the database (when using a beta version of Remote Desktop Manager).</td></tr><tr><td><strong>Manage cache</strong></td><td>Manage your cache on your computer to analyse, vacuum, repair or delete it. This can be very helpful if you have offline issues.</td></tr><tr><td><strong>More settings</strong></td><td>Edit the connection string values directly.</td></tr></tbody></table>
{% endtab %}

{% tab title="macOS" %}
{% hint style="danger" %}
Microsoft SQL Server is a deprecated workspace for Remote Desktop Manager macOS.
{% endhint %}

#### General

![](https://cdnweb.devolutions.net/docs/RDMM4028_2025_1.png)

<table><thead><tr><th width="214">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Name</strong></td><td>Display name of the workspace.</td></tr><tr><td><strong>Host</strong></td><td>Name of the server where the workspace will be stored.</td></tr><tr><td><strong>SQL Server</strong></td><td><p>Select your workspace between:</p><ul><li><strong>Microsoft SQL Server</strong></li><li><strong>Microsoft Azure SQL</strong></li><li><strong>Microsoft SQL Server on AWS</strong></li></ul></td></tr><tr><td><strong>Login mode</strong></td><td><p>Specify the authentication mode to use. Select between:</p><ul><li><strong>Database login</strong></li><li><strong>Integrated security (Active Directory)</strong></li><li><strong>Custom login</strong></li></ul></td></tr><tr><td><strong>Username</strong></td><td>Username to access the SQL server.</td></tr><tr><td><strong>Password</strong></td><td>Password to access the SQL server. Can be randomly generated with the help of the <strong>Password generator</strong>button next to the field.</td></tr><tr><td><strong>Always ask password</strong></td><td>Prompt for the password when a user connects to the workspace.</td></tr><tr><td><strong>Allow change username</strong></td><td>Allow the username to be edited when connecting to the workspace (only with <strong>Always ask password</strong> enabled).</td></tr><tr><td><strong>Database</strong></td><td>Name of the database on the SQL server for the utilization of Remote Desktop Manager macOS.</td></tr><tr><td><strong>Test server</strong></td><td>Test the connection with the server to validate if the proper information has been provided.</td></tr><tr><td><strong>Test database</strong></td><td>Test the connection with the database to validate if the proper information has been provided.</td></tr></tbody></table>

#### Settings

![](https://cdnweb.devolutions.net/docs/RDMM4029_2025_1.png)

<table><thead><tr><th width="216">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Ping online method</strong></td><td><p>Indicate the preferred ping online method. Select between:</p><ul><li>None</li><li>Ping</li><li>Port scan</li></ul></td></tr><tr><td><strong>Automatically go offline on offline prompt</strong></td><td>Use the workspace in offline mode when the ping method does not respond.</td></tr></tbody></table>

#### Upgrade

![](https://cdnweb.devolutions.net/docs/RDMM4030_2025_1.png)

<table><thead><tr><th width="222">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Test server</strong></td><td>Test the connection with the server to validate if the proper information has been provided.</td></tr><tr><td><strong>Create database</strong></td><td>Create the database on the SQL server to use Remote Desktop Manager.</td></tr><tr><td><strong>Update database</strong></td><td>Update the database on the SQL server, if required to use Remote Desktop Manager.</td></tr><tr><td><strong>Validate database</strong></td><td>Validate the content of the database.</td></tr><tr><td><strong>Test database</strong></td><td>Test the connection with the database to validate if the proper information has been provided.</td></tr><tr><td><strong>Email schema to support</strong></td><td>Send your schema to our customer support team.</td></tr></tbody></table>

#### User vault

![](https://cdnweb.devolutions.net/docs/RDMM4031_2025_1.png)

<table><thead><tr><th width="170">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Connection type</strong></td><td><p>Select the type of user vault to use. Select between:</p><ul><li>Default: use the default user vault, which is stored in the database.</li><li>None: disable the user vault for all users.</li></ul></td></tr></tbody></table>

#### VPN

![](https://cdnweb.devolutions.net/docs/RDMM4032_2025_1.png)

<table><thead><tr><th width="191">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Type</strong></td><td><p>Select between:</p><ul><li><strong>None</strong></li><li><strong>On first connect</strong></li><li><strong>Connect if unable to ping/port scan</strong></li></ul></td></tr><tr><td><strong>RDM file</strong></td><td>Open a <strong>VPN entry type</strong> from a <strong>RDM file</strong> before connecting to the workspace.</td></tr><tr><td><strong>Override credentials</strong></td><td>Override credentials such as <strong>Username, Domain</strong>, and <strong>Password</strong>.</td></tr></tbody></table>

#### Advanced

![](https://cdnweb.devolutions.net/docs/RDMM4033_2025_1.png)

<table><thead><tr><th width="257">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Caching mode</strong></td><td>Determines how the entries will be reloaded in the workspace. For more information, please consult <a href="https://docs.devolutions.net/rdm/workspaces/caching/">Caching</a>.</td></tr><tr><td><strong>Sync all vaults (background)</strong></td><td>Synchronization ensures that any changes made to a vault, such as updating passwords or adding new sessions, are propagated across all connected devices and users in real-time.</td></tr><tr><td><strong>Trust certificate</strong></td><td>Set how the workspace handles certificates.</td></tr><tr><td><strong>Connection timeout</strong></td><td>Waiting time before a connection timeout.</td></tr><tr><td><strong>Command timeout</strong></td><td>Waiting time before a command timeout.</td></tr><tr><td><strong>Auto refresh</strong></td><td>Set the interval for the automatic refresh.</td></tr><tr><td><strong>Prompt for offline mode on startup</strong></td><td>Ask to use the workspace in offline mode when the user connects to the workspace.</td></tr><tr><td><strong>Allow beta database upgrade</strong></td><td>Allow beta upgrade of the database (when using a beta version of Remote Desktop Manager).</td></tr><tr><td><strong>Manage cache</strong></td><td>Manage your cache on your computer to analyse, vacuum, repair or delete it. This can be very helpful if you have offline issues.</td></tr><tr><td><strong>Advanced settings</strong></td><td>Edit the connection string values directly.</td></tr></tbody></table>
{% endtab %}
{% endtabs %}


# Configure a Microsoft SQL Server workspace

1. Install Microsoft SQL Server or Microsoft SQL Server Express.

{% hint style="info" %}
Newly installed Microsoft SQL Server instances do not allow remote connections. Please follow the directions in SQL Server.For added security, you can enable SSL Encryption to communicate with your instance of SQL Server. However, due to a framework limitation, this is not compatible with our iOS and Android versions of Remote Desktop Manager. Please follow directions on [Configure SQL Server Database Engine for encrypting connections](https://learn.microsoft.com/en-US/sql/database-engine/configure-windows/configure-sql-server-encryption).
{% endhint %}

2. Follow the steps in [Create a workspace](https://docs.devolutions.net/rdm/workspaces/create-a-workspace/). On Step 4, after having configured the connection settings but before testing the server or otherwise verifying the connection, continue with the steps below.
3. Select the ***Upgrade*** tab and click the ***Create database*** button. If the database is already created on the Microsoft SQL Server, click the ***Update database*** button to add the appropriate tables to the database.

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW4024_2024_1.png" alt=""><figcaption></figcaption></figure>

4. Once the database is created, create an administrator account for the database via the ***Administration – Users*** menu.

{% hint style="info" %}
If the database is created using a system administrator (example: SA), we recommend to keep this user only for the database creation and the [database upgrade](https://docs.devolutions.net/rdm/installation/database-upgrade/). A Remote Desktop Manager administrator account must be created first. Then, regular users are created with this administrator account.
{% endhint %}

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW4025_2024_1.png" alt=""><figcaption></figcaption></figure>

{% hint style="info" %}
Integrated security authentication mode is not officially supported on Remote Desktop Manager for Linux.
{% endhint %}

5. Connect to the Microsoft SQL Server database with the Remote Desktop Manager administrator account. To do so, edit the workspace used to create the database and change the login information for the administrator account created with Remote Desktop Manager.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMW4026_2024_1.png" alt=""><figcaption></figcaption></figure>

The Microsoft SQL Server workspace is now correctly configured.


# Configure least privileges administrator account for an SQL workspace

In some scenarios, you may wish to create an SQL Server admin user without giving them full sysadmin rights. This lets you maintain tighter control over permissions while still giving admins what they need to add and manage users in Remote Desktop Manager. Here is how to set this up:

1. Open SQL Server Management Studio (SSMS) and connect to the desired SQL Server database.
2. Navigate to the user you wish to set up, right-click on it, and select ***Properties***.
3. Then, in the ***Membership*** section, check the ***db\_owner role***.
4. Next, go to the ***Securables*** section, and check the ***Grant*** and ***With Grant*** options for the ***Alter any login*** permission. Click ***OK***.


# Encrypting connections to SQL Server

To ensure that the communication between Remote Desktop Manager and the Microsoft SQL Server database is encrypted, an extensive procedure must be followed on the Microsoft SQL Server instance.

Please consult this Microsoft technet article that provides detailed instructions: [Encrypting connections to SQL Server](https://learn.microsoft.com/en-us/previous-versions/sql/sql-server-2008-r2/ms189067\(v=sql.105\)?redirectedfrom=MSDN).

After it has been properly configured, the only modification to perform in Remote Desktop Manager is to set a property in the ***More settings*** of the workspace.

### Procedure

1. Create or edit an Microsoft SQL Server workspace, access the ***Advanced*** tab and click the ***More settings*** button.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMW6085_2024_2.png" alt=""><figcaption></figcaption></figure>
2. Set the ***Encrypt*** property value to ***true***. Click ***OK*** to validate.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMW6086_2024_2.png" alt=""><figcaption></figcaption></figure>


# Recovery model

Microsoft SQL Server backup and restore operations occur within the context of the recovery model of the database. Recovery models are designed to control transaction log maintenance. A recovery model is a database property that controls how transactions are logged, whether the transaction log requires (and allows) backing up, and what kinds of restore operations are available. Three recovery models exist: simple, full, and bulk-logged. Typically, a database uses the full recovery model or simple recovery model. A database can be switched to another recovery model at any time.

{% hint style="warning" %}
If the recovery model is set to Full, it is critical that regular backups of BOTH the database and the transaction log are performed. Not performing these backups will result in the database files to increase in size at an alarming rate. This will severely impact the performance in the long run.
{% endhint %}

{% hint style="info" %}
For further information regarding SQL Recovery models, refer to [Recovery models (SQL Server)](https://msdn.microsoft.com/en-CA/library/ms189275.aspx).
{% endhint %}


# Add a new workspace

Upon first launch, Remote Desktop Manager uses a local SQLite workspace. The different workspaces are listed in [Workspace types](https://docs.devolutions.net/rdm/workspaces/workspace-types/). For help selecting a workspace tailored to your needs, please see our [Getting started](https://docs.devolutions.net/rdm/getting-started/) section.

{% tabs %}
{% tab title="Windows" %}
Once you have identified your needs, you can proceed with the creation of your first workspace:

1. In Remote Desktop Manager, go to ***File – Workspaces***.
2. Click ***Add a new workspace***.
3. Select the type of workspace to create. In the example below, a Devolutions Server workspace is being created.

<figure><img src="https://webdevolutions.blob.core.windows.net/docs/DVLS6007_2026_2.png" alt=""><figcaption></figcaption></figure>

4. Configure the workspace connection settings. To validate the information, click on ***Test connection*** or ***Test host*** depending on the type of workspace being created.
5. Click ***Add*** when the configuration is complete.
6. Once created, the new workspace should automatically open. You can also manually open the workspace by selecting it from the workspace drop-down list at the top of the navigation pane.

You may have to [add a Remote Desktop Manager license](https://docs.devolutions.net/rdm/commands/administration/licenses/) to your workspace. If you are using [Devolutions Server or Devolutions Cloud](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/), there is no need to add a license in Remote Desktop Manager as the license serial is retrieved directly from the workspace.
{% endtab %}

{% tab title="macOS" %}
Once you have identified your needs, you can proceed with the creation of your first workspace:

1. In Remote Desktop Manager macOS, go to ***File – Workspaces***.
2. Click ***Add a new workspace***.
3. Select the type of workspace to create, then click ***OK***. In the example below, a Devolutions Server workspace is being created.
4. Configure the workspace connection settings. To validate the information, click on ***Test connection*** or ***Test server*** depending on the type of workspace being created.

   ![](https://cdnweb.devolutions.net/docs/RDMM4129_2026_1.png)
5. Click ***OK*** when the configuration is complete, then ***OK*** again to close the ***Workspaces*** window.
6. The new workspace should automatically open. You can also manually open the workspace by selecting it from the workspace drop-down list at the top of the navigation pane.

You may have to [add a Remote Desktop Manager macOS license](https://docs.devolutions.net/rdm/commands/administration/licenses/) to your workspace. If you are using [Devolutions Server or Devolutions Cloud](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/), there is no need to add a license in Remote Desktop Manager macOS as the license serial is retrieved directly from the workspace.
{% endtab %}

{% tab title="Linux" %}
Once you have identified your needs, you can proceed with the creation of your first workspace:

1. In Remote Desktop Manager, go to ***File – Workspaces***.
2. Click on ***Add a new workspace***.
3. Select the type of workspace to create, then click ***Add***. In the example below, a Devolutions Server workspace is being created. Click ***Ok***.
4. Configure the workspace connection settings. To validate the information, click on ***Test connection*** or ***Test host*** depending on the type of workspace being created.

![](https://cdnweb.devolutions.net/docs/RDML4015_2025_1.png)

5. Click ***Save*** when the configuration is complete.
6. Once created, the new workspace should automatically open. You can also manually open the workspace by selecting it from the workspace drop-down list at the top of the navigation pane.

You may have to [add a Remote Desktop Manager license](https://docs.devolutions.net/rdm/commands/administration/licenses/) to your workspace. If you are using [Devolutions Server or Devolutions Cloud](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/), there is no need to add a license in Remote Desktop Manager as the license serial is retrieved directly from the workspace.
{% endtab %}

{% tab title="iOS" %}
The workspace in Remote Desktop Manager iOS can be a file or a database. You can configure multiple workspaces within the application.

1. To create a new workspace, tap on the left corner.
2. Select ***Manage workspaces***.
3. Tap ***Add a new workspace***.
4. Select the workspace type you want to create, enter all the required information and tap on ***Done***.
5. The workspace has been created.
   {% endtab %}

{% tab title="Android" %}
Once you have identified your needs, you can proceed with the creation of your first workspace:

1. In Remote Desktop Manager Android, tap the menu icon located at the top left corner of your screen, then tap your current workspace.
2. Tap the plus icon (***+***).
3. Select the type of workspace to create, then click ***Ok***. In the example below, a Devolutions Server workspace is being created.
4. Configure the workspace connection settings. To validate the information, click on ***Test connection*** or ***Test host*** depending on the type of workspace being created.
5. Tap the floppy disk icon when the configuration is complete to save the new workspace.
6. Once created, the new workspace should automatically open.

You may have to [add a Remote Desktop Manager license](https://docs.devolutions.net/rdm/commands/administration/licenses/) to your workspace. If you are using [Devolutions Server or Devolutions Cloud](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/), there is no need to add a license in Remote Desktop Manager as the license serial is retrieved directly from the workspace.
{% endtab %}
{% endtabs %}

#### See also

* [Devolutions Academy – Create a new workspace](https://academy.devolutions.net/student/page/3182398-create-a-new-data-source?curriculum_activity_id=4932865\&path_id=2628397\&sid=0ad9db1a-87e2-4af2-a210-69ce1e2c4af1\&sid_i=0)
* [Devolutions Academy – Choosing the right workspace](https://academy.devolutions.net/student/path/1916054/activity/2667043)
* [Devolutions Academy – Quick start up: up and running in 10 minutes](https://docs.devolutions.net/rdm/knowledge-base/how-to-articles/quickly-deploy-remote-desktop-manager)


# Caching

The caching mode will determine how the client will refresh the content of the workspace when changes are detected. On large workspaces, caching is essential as it increases performance significantly.

{% tabs %}
{% tab title="Windows" %}
{% hint style="info" %}
This feature is only available when using an [advanced workspace](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/). If the cache is outdated, press <kbd>Ctrl</kbd>+<kbd>F5</kbd> to refresh the local cache. This will force the application to retrieve the entire content of the workspace to recreate the cache.
{% endhint %}

### Settings

The ***Caching mode*** option can be accessed via ***File – Workspaces – Edit workspace – Advanced*** in an advanced workspace.

<table><thead><tr><th width="135">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Disabled</td><td>Prevent an offline cache from being used.</td></tr><tr><td>In-memory</td><td>Use the offline cache only for recent changes, but prevent it from writing on the disk (in-memory only).</td></tr><tr><td>File</td><td>Use the offline cache only for recent changes. The cache will write on the disk.</td></tr></tbody></table>

### Location

The client cache is persisted to disk in **%LocalAppData%\Devolutions\RemoteDesktopManager\[GUID:DataSourceID]**.

{% hint style="info" %}
You can enhance the security of the offline file by selecting and setting up the ***Enhanced security*** in ***File – Settings – Security***.Depending on the configuration of the caching mode and the [offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/), the offline file may still exist since the file servers as a dual purpose caching and offline line support.
{% endhint %}
{% endtab %}

{% tab title="macOS" %}
{% hint style="info" %}
This feature is only available when using an [advanced workspace](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/).
{% endhint %}

The ***Caching mode*** option can be accessed via ***File – Workspaces – Edit workspace – Advanced*** in an advanced workspace.

<table><thead><tr><th width="125">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td>Disabled</td><td>Prevent an offline cache from being used.</td></tr><tr><td>In-memory</td><td>Use the offline cache only for recent changes, but prevent it from writing on the disk (in-memory only).</td></tr><tr><td>File</td><td>Use the offline cache only for recent changes. The cache will write on the disk.</td></tr></tbody></table>

### Location

You can find the configuration file by doing a right click on your Finder - Go to Folder and in the Folder dialog type \~/Library.

You can then follow the path Application Support/com.devolutions.remotedesktopmanager select the pertaining database where you will find the offline.db file.

The file is an SQLite database encrypted using a non-portable computed key hash.

{% hint style="info" %}
You can enhance the security of the offline file by selecting and setting up the ***Enhanced security*** in ***File – Settings – Security***.Depending on the configuration of the caching mode and the [offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/), the offline file may still exist since the file servers as a dual purpose caching and offline line support.
{% endhint %}
{% endtab %}
{% endtabs %}


# Import and export a workspace

{% tabs %}
{% tab title="Windows" %}
To simplify deployment for multiple users, it is possible to export and import workspace configurations. The generated file contains all the information to recreate the configuration.

The file does not include the content of the workspace; only the configuration is exported. Use the entry's export functionality to back up or copy the content of the database.

{% hint style="info" %}
Instead of exporting and importing workspaces and settings separately, it is possible to create a custom installer. The [custom installer service](https://docs.devolutions.net/rdm/installation/client/custom-installer-service/) replicates the configuration of a Remote Desktop Manager instance.
{% endhint %}

1. From ***File*** – ***Workspaces***, click on the ***Export workspace configuration*** button, then save the `.rdd` file on your computer.
2. To import the workspace in another Remote Desktop Manager instance, use ***File*** – ***Workspaces***, click on the ***Import workspace configuration*** button, and select the `.rdd` file.

Whether or not users can ***Read/Write*** in [offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/) is first decided at the workspace [caching mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/offline-read-write/) level. This cannot be changed remotely. To prevent or allow remote users the ***Read/Write*** offline feature, do so before exporting the workspace

{% hint style="info" %}
A locked workspace can be exported and imported, but the content will be locked unless a password is entered when the workspace is selected. See [Lock a workspace](https://docs.devolutions.net/rdm/workspaces/lock/) for more information.
{% endhint %}
{% endtab %}

{% tab title="macOS" %}
To simplify deployment for multiple users, it is possible to export and import workspace configurations. The generated file contains all the information to recreate the configuration.

The file does not include the content of the workspace; only the configuration is exported. Use the entry's export functionality to back up or copy the content of the database.

Use ***File*** – ***Workspaces*** to access the import or export functionality.

Whether or not users can ***Read/Write*** in [offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/) is first decided at the workspace's [caching mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/offline-read-write/) level. This cannot be changed remotely. If you wish to prevent or allow remote users the ***Read/Write*** offline feature, you should do so before exporting your workspace.

{% hint style="info" %}
A [locked workspace](https://docs.devolutions.net/rdm/workspaces/lock/) can be exported and imported, but the content will be locked unless a password is entered when the workspace is selected.
{% endhint %}
{% endtab %}

{% tab title="iOS" %}
To simplify deployment for multiple users, it is possible to export and import workspace configurations. The generated file contains all the information to recreate the configuration.

The file does not include the content of the workspace; only the configuration is exported. Use the entry's export functionality to back up or copy the content of the database.

### Export the workspace

1. In Remote Desktop Manager navigate to ***File*** – ***Workspaces***, select the workspace to import on the iOS device, click on ***Export workspace configuration***, and ***Save*** the file on the computer.
2. Launch iTunes and connect the iOS device to the computer. In iTunes, select the iOS device.
3. Click ***Apps*** In the ***File Sharing*** area, select ***RDM*** and click ***Add*** file.
4. Select the file exported from Remote Desktop Manager and click ***Open*** The file is now copied in the device but still needs to be imported in Remote Desktop Manager iOS's file repository.

### Import the workspace

1. From the iOS device, launch Remote Desktop Manager and tap ***More*** Navigate to the ***Tools*** section and select ***File Repository***.
2. Tap on the Ellipsis button and select ***Import***.
3. Select the file and tap ***Done*** The file is now available to Remote Desktop Manager iOS.
4. Back in the ***More*** section, navigate to the ***Workspaces*** list and tap ***Import***.
5. Select the file.

The workspace is now imported in the application.
{% endtab %}

{% tab title="Android" %}
To simplify deployment for multiple users, it is possible to export and import workspace configurations. The generated file contains all the information to recreate the configuration.

The file does not include the content of the workspace; only the configuration is exported. Use the entry's export functionality to back up or copy the content of the database.

1. To export the workspace configuration from Remote Desktop Manager, navigate to ***File – Workspaces*** Select the workspace to import on the Android device, click on ***Export workspace configuration***, and save the `.rdd` file on the computer.
2. Select the .`rdd` file exported from Remote Desktop Manager and transfer it on your Android device using the Windows File Explorer. The file now needs to be imported in the Remote Desktop Manager Android file repository.
3. From the Android device, launch Remote Desktop Manager Android.
4. Open the side menu and tap on the currently opened ***Workspace***.
5. Tap the ***+*** icon to add a new workspace, and select ***Import .rdd***.
6. Locate and select the `.rdd` file exported at step #1.
   {% endtab %}
   {% endtabs %}


# Lock a workspace

To protect sensitive data in your workspace configuration (e.g., server URL or credentials), you may wish to lock the workspace configuration before you deploy it to your users. You can do it by using the ***Lock/Unlock*** button from the toolbar.

The locked workspace will require a password. The password must be specify when the lock is applied. Use the same password to unlock it or to modify the workspace configuration.

{% hint style="danger" %}
There is no way of unlocking the workspace if the password is lost or forgotten. In such an event, you will need to configure a new workspace. However the content of the database will not be lost.
{% endhint %}


# Multifactor authentication

{% hint style="info" %}
This feature is only available for [Devolutions Server](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/server/), [Microsoft Azure SQL](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/), [Microsoft SQL Server](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-sql-server/), and [SQLite](https://docs.devolutions.net/rdm/workspaces/workspace-types/local-workspaces/sqlite/) workspaces.
{% endhint %}

Multifactor authentication (MFA) identifies users by at least two different components: something that the user knows (often a password) and something that the user possesses (e.g., a validation code sent to a mobile device). If one of the components is missing or supplied incorrectly, the user's identity is not established with sufficient certainty and access to the workspace will remain blocked.

MFA is set at the workspace level, except in Devolutions Server, where it is [set on the user](https://docs.devolutions.net/server/web-interface/administration/configuration/server-settings/security/two-factor/). Remote Desktop Manager supports [Authenticator (TOTP)](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/authenticator-totp/), [Yubikey](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/yubikey/), and [Duo](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/duo/).

{% hint style="info" %}
Consult [Lost the MFA set on the workspace](https://docs.devolutions.net/rdm/kb/troubleshooting-articles/lost-the-mfa-set-on-the-workspace/) in the the MFA has been lost.
{% endhint %}

### Configure multifactor authentication on a Microsoft Azure SQL or SQL Server workspace

1. In Remote Desktop Manager, go to the workspace for which you want to configure the MFA.
2. Go to ***File*** – ***My account settings*** and click on ***Workspace MFA***.
3. In the ***Multifactor configuration*** window, click ***Change***.
4. Select your MFA type in the drop-down list.
5. Follow one of the links below depending on the choice made in the previous step:
   * [Authenticator (TOTP)](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/authenticator-totp/)
   * [Yubikey](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/yubikey/)
   * [Duo](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/duo/)

### Configure multifactor authentication on an SQLite workspace

1. In Remote Desktop Manager, go to the workspace for which you want to configure the MFA.
2. Go to ***File*** – ***Workspaces*** and click on the ***Edit workspace*** button.
3. Next to the ***Multifactor*** option, click ***None***.

   ![](https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2150.png)
4. In the ***Multifactor configuration*** window, click ***Change***.
5. Select your MFA type in the drop-down list.
6. Follow one of the links below depending on the choice made in the previous step:
   * [Authenticator (TOTP)](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/authenticator-totp/)
   * [Yubikey](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/yubikey/)
   * [Duo](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/duo/)

### Configure multifactor authentication on a Devolutions Cloud workspace

1. In the Devolutions Cloud web UI, head over to ***Administration*** – ***Authentication***.
2. Toggle ***Enforce multi-factor verification on Devolutions Account***. Doing so will force you to set up an MFA as well.

### Configure multifactor authentication on a Devolutions Server workspace user

As mentionned before, multifactor authentication is set on a per-user basis for Devolutions Server workspaces. Here's how do to so:

1. Open the Devolutions Server web UI.
2. Go to ***Administration*** – ***Users***, and ***Edit*** the user you wish to enforce MFA on.
3. In the ***Multi-factor*** tab, select ***Authenticator (TOTP)***. Changing the multifactor authentication of an administrator account requires entering its password.
4. Scan the QR code with your mobile app or use the key and account name to set up your account. Alternatively, you can check the ***Configure later by the user*** to leave those steps to the user.
5. Then, enter the code obtained by scanning the QR code.
6. Click ***Update*** to apply the changes to the user.

#### See also

* [Configure Multi-factor-authentification in Remote Desktop Manager](https://academy.devolutions.net/student/page/2745736-configure-multi-factor-authentification-in-remote-desktop-manager?curriculum_activity_id=4146028\&path_id=2628397\&sid=6b463cb0-a447-42c1-89fa-4ac51e5a7eaa\&sid_i=0)


# Authenticator (TOTP)

Remote Desktop Manager allows you to use an ***Authenticator (TOTP)*** such as the [Devolutions Password Manager mobile app](https://devolutions.net/workspace/) or another authenticator app to provide an additional security layer when opening a workspace.

{% hint style="info" %}
Before you start the configuration, make sure you have installed the [Devolutions Password Manager mobile app](https://devolutions.net/workspace/) or another authenticator app on a supported device.
{% endhint %}

1. If not already done, follow these [multifactor authentication configuration steps](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/) first.
2. After having selected the ***Authenticator (TOTP)*** MFA type, click ***Configure***.
3. Scan the QR code that appears in the ***Authenticator setup*** window with your device application.
4. Enter the ***Validation code*** provided by the ***Authenticator (TOTP)***.
5. Click ***Validate***.
6. Relaunch Remote Desktop Manager to be prompted for the ***Authenticator (TOTP)*** code.

#### See also

* [Configure Multi-factor-authentification in Remote Desktop Manager](https://academy.devolutions.net/student/page/2745736-configure-multi-factor-authentification-in-remote-desktop-manager?curriculum_activity_id=4146028\&path_id=2628397\&sid=6b463cb0-a447-42c1-89fa-4ac51e5a7eaa\&sid_i=0)
* [Devolutions Academy – Breaking down common scenarios: remote access for field work](https://academy.devolutions.net/student/activity/3380820)


# Duo

Remote Desktop Manager allows you to configure a ***Duo*** authentication to provide an additional security layer when opening a workspace.

{% hint style="info" %}
Before you start the configuration, make sure you have created a Duo account and have also installed the Duo application on your compatible device.
{% endhint %}

{% tabs %}
{% tab title="Windows" %}

1. Log in to the ***Duo Admin Panel***.
2. In ***Applications***, click on ***Protect an Application***.
3. Protect the ***Partner Auth API*** app.
4. If not already done, follow these [multifactor authentication configuration steps](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/).
5. After having selected the ***Duo*** MFA type, click ***Duo – General Settings***.
6. All the information necessary to fill in the ***Duo settings*** fields in Remote Desktop Manager will be generated by the Duo account.
7. Copy and paste all the information in the corresponding fields in the ***Duo Settings*** window.
8. Click on ***Check*** to validate the information, then click ***OK*** when done.
9. If there is more than one device connected to the Duo account, click on ***Settings***. If not, skip to step 10.

   <figure><img src="https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2148.png" alt=""><figcaption></figcaption></figure>
10. Select the device to use for the multifactor authentication by clicking on ***Use this device***.

    <figure><img src="https://cdnweb.devolutions.net/docs/docs_en_rdm_windows_RDMWin2147.png" alt=""><figcaption></figcaption></figure>
11. Select the method by which to receive the Duo Passcode:
    * ***Duo push***: The code is "pushed" to your Duo application.
    * ***Send SMS***: The code is sent by SMS on the registered phone number.
    * ***Phone***: The code is sent by phone call; a computer generated voice will dictate the code.
12. Click ***Save*** to authenticate yourself.

Once you have completed all the steps, you will be prompted with the Duo Authentication every time you connect to your secured workspace.
{% endtab %}

{% tab title="macOS" %}

1. Log in to the ***Duo Admin Panel***.
2. In ***Applications***, click on ***Protect an Application***.
3. Protect the ***Partner Auth API*** app.
4. If not already done, follow these [multifactor authentication configuration steps](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/).
5. After having selected the ***Duo*** MFA type, click ***Apply***.
6. All the information necessary to fill in the ***Duo settings*** fields in Remote Desktop Manager will be generated by the Duo account.
7. Copy and paste all the information in the corresponding fields in the ***Duo Settings*** window.
8. Click on ***Check*** to validate the information, then click ***OK*** when done.
9. If there is more than one device connected to the Duo account, click on ***Settings***. If not, skip to step 10.
10. Select the device to use for the multifactor authentication by clicking on ***Use this device***.
11. Select the method by which to receive the Duo Passcode:
    * ***Duo push***: The code is "pushed" to your Duo application.
    * ***Send SMS***: The code is sent by SMS on the registered phone number.
    * ***Phone***: The code is sent by phone call; a computer generated voice will dictate the code.
12. Click ***Save*** to authenticate yourself.

    <figure><img src="https://cdnweb.devolutions.net/docs/docs_en_rdm_mac_RDMMac2060.png" alt=""><figcaption></figcaption></figure>

Once you have completed all the steps, you will be prompted with the Duo Authentication every time you connect to your secured workspace.
{% endtab %}
{% endtabs %}

#### See also

* [Configure Multi-factor-authentification in Remote Desktop Manager](https://academy.devolutions.net/student/page/2745736-configure-multi-factor-authentification-in-remote-desktop-manager?curriculum_activity_id=4146028\&path_id=2628397\&sid=6b463cb0-a447-42c1-89fa-4ac51e5a7eaa\&sid_i=0)


# YubiKey

Remote Desktop Manager allows you to use a ***YubiKey*** to provide an additional security layer when opening a workspace.

{% hint style="info" %}
Before you start the configuration, make sure you have a ***YubiKey*** in your possession.
{% endhint %}

1. If not already done, follow these [multifactor authentication configuration steps](https://docs.devolutions.net/rdm/workspaces/multi-factor-authentication/).
2. After having selected the ***YubiKey*** MFA type, click ***Configure***.
3. Insert the ***YubiKey*** into a USB port of your computer.
4. Hold the gold button on the ***YubiKey*** to have the code filled in the field.
5. Click ***Save***.
6. Relaunch Remote Desktop Manager to be prompted for a ***YubiKey*** code.

### Copy to YubiKey

Upon connecting a YubiKey to your system, the ***Copy to YubiKey*** appears in the content area of credential entries. Clicking the button automatically copies the content of the entry to your key.

#### See also

* [Configure Multi-factor-authentification in Remote Desktop Manager](https://academy.devolutions.net/student/page/2745736-configure-multi-factor-authentification-in-remote-desktop-manager?curriculum_activity_id=4146028\&path_id=2628397\&sid=6b463cb0-a447-42c1-89fa-4ac51e5a7eaa\&sid_i=0)


# Offline mode

The ***Offline Mode*** connects to a local copy of the workspace when you are not connected to the workspace. This is useful when working from a remote location and the network is unreachable or if there is any kind of connectivity issue. This feature is not available for all [workspaces](https://docs.devolutions.net/rdm/workspaces/). Additionally, several features are not available in offline mode, such as [attachments](https://docs.devolutions.net/rdm/commands/window/attachments/), [logs](https://docs.devolutions.net/rdm/commands/reports/logs/), and [user management](https://docs.devolutions.net/rdm/commands/administration/user-management/) (add/edit/delete users).

The read/write offline mode adds to users the possibility to manipulate entries while disconnected from the workspace. This is useful for off-site personnel or when working in environments that have sporadic network availability.

The offline cache is first encrypted using our own private key mixed with some information taken from the local computer. This makes it impossible for a copy on another machine to be readable. By default it is also encrypted with Windows NTFS encryption, in which case there is no key saved anywhere.

For added security, offline files are set to expire after a delay. The default expiry is set to 7 days but can be modified via the [System settings](https://docs.devolutions.net/rdm/commands/administration/system-settings/application-specific/offline/).

### Configuring offline workspace

To learn how to configure offline mode for advanced workspaces, click on the list below.

* [Devolutions Cloud offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/devolutions-cloud-offline-mode)
* [Devolutions Server offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/devolutions-server-offline-mode/)
* [Microsoft Azure SQL offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/microsoft-azure-sql-offline-mode/)
* [Microsoft SQL Server offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/sql-offline-mode/)

#### See also

* [Devolutions Academy – Enable backups and work in offline mode](https://academy.devolutions.net/student/page/3266687-enable-backups-and-work-in-offline-mode?curriculum_activity_id=5108638\&path_id=3266571\&sid=533ed8a2-15b6-4a37-a799-18f0e59f03e0\&sid_i=0)


# Devolutions Cloud offline mode

Follow the steps to lean how to enable [offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/) for a [Devolutions Cloud workspace](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/devolutions-cloud/?tab=windows).

#### User account offline mode setting

To enable a user account to use offline mode, go to ***Administration*** – ***Users*** – ***Edit*** and click ***Allow offline***.

#### Workspace information

To have a overview of the workspace configuration, open the [workspace information](https://docs.devolutions.net/rdm/commands/file/my-workspace-information/) by going to ***File - My workspace information*** in Remote Desktop Manager.

#### Going offline

Remote Desktop Manager will prompt for offline mode when the application is unable to reach the workspace. The offline mode can also be toggled manually via ***File*** – ***Go offline*** or by clicking the ***Go offline*** button located in the bottom pane (Windows only).


# Devolutions Server offline mode

Follow the steps to lean how to enable [offline mode](https://docs.devolutions.net/rdm/data-sources/offline-mode/) for a [Devolutions Server workspace](https://docs.devolutions.net/rdm/data-sources/data-sources-types/advanced-data-sources/server/).

{% hint style="info" %}
Some features of Remote Desktop Manager are unavailable while offline. Even with the read/write access mode, you may not be able to perform all actions, such as adding attachments or managing users, since these features are not cached locally. On the other hand, the [user vault](https://docs.devolutions.net/rdm/user-interface/navigation-pane/user-vault/) is still available in offline mode.
{% endhint %}

{% tabs %}
{% tab title="Windows" %}

### Configuration <a href="#configuration" id="configuration"></a>

1. Open Remote Desktop Manager.
2. Go to the ***properties*** of the workspace.
3. Click ***Edit workspace*** and navigate to the ***advanced*** tab.
4. Select ***In-memory*** or ***File*** in the ***Caching mode*** drop-down menu.
5. Click ***Save*** to close the window.

{% hint style="warning" %}
This step cannot be modified remotely once you have exported your workspace settings.
{% endhint %}

<figure><img src="https://cdnweb.devolutions.net/docs/DVLS6009_2024_3.png" alt=""><figcaption></figcaption></figure>

<table data-header-hidden><thead><tr><th width="128"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Disabled</strong></td><td>Prevents offline cache from being used.</td></tr><tr><td><strong>In-Memory</strong></td><td>Uses the offline cache only for recent changes, but prevents it from writing on the disk</td></tr><tr><td><strong>File</strong></td><td>Uses the offline cache only for recent changes. The cache will write on the disk.</td></tr></tbody></table>

6. In the ribbon of Remote Desktop Manager, navigate to ***Administration*** – ***System settings*** – ***Cache/offline***, and set ***Offline mode*** to ***Cache-only***, ***Read-only*** or ***Read/write***.
7. Click ***Save*** to close the window.

<figure><img src="https://cdnweb.devolutions.net/docs/DVLS6008_2024_3.png" alt=""><figcaption></figcaption></figure>

<table data-header-hidden><thead><tr><th width="140"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Disabled</strong></td><td>Prevents an offline cache from being used.</td></tr><tr><td><strong>Cache only</strong></td><td>Allows to save a cache of the workspace to improve loading performance. This option disallows the use of the offline mode.</td></tr><tr><td><strong>Read-only</strong></td><td>Allows to view and use entries only. The content of the workspace cannot be modified.</td></tr><tr><td><a href="https://docs.devolutions.net/rdm/data-sources/offline-mode/offline-read-write/"><strong>Read/Write</strong></a></td><td>Allows to view, use, and edit entries. Conflicts caused by offline modifications are managed when back online.</td></tr></tbody></table>

#### Offline vault <a href="#offline-vault" id="offline-vault"></a>

For each vault, go to ***Administration – Vault settings – Security settings***, and set ***Allow offline*** to ***Yes***.

This setting is not available in Remote Desktop Manager if the vault security level is set to [***High***](https://docs.devolutions.net/server/web-interface/administration/security-management/vaults/general/).

<figure><img src="https://cdnweb.devolutions.net/docs/DVLS4262_2026_1.png" alt=""><figcaption></figcaption></figure>

#### Enable offline user account <a href="#enable-offline-user-account" id="enable-offline-user-account"></a>

1. Go to the ribbon of Remote Desktop Manager.
2. Select ***Administration*** – ***Users*** – ***Edit*** – ***Settings***, and set the ***Offline mode*** setting to ***Cache-only***, ***Read-only*** or ***Read/write*** to enable a user account to use offline mode.

{% hint style="info" %}
A user must be granted [***Read/Write*** at all levels](https://docs.devolutions.net/rdm/data-sources/offline-mode/devolutions-server-offline-mode/?tab=windows#grant-and-deny-offline) to allow read/write privileges.
{% endhint %}

<figure><img src="https://cdnweb.devolutions.net/docs/DVLS6007_2024_3.png" alt=""><figcaption></figcaption></figure>

3. Click ***Update*** to close the window.

#### Enable offline user groups <a href="#enable-offline-user-groups" id="enable-offline-user-groups"></a>

User groups policies (only for Devolutions Server data sources) must be set to ***Cache-only***, ***Read-only*** or ***Read/write***. Go to ***Administration*** – ***User groups*** – ***Edit*** – ***Settings.***

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW4084_2024_2.png" alt=""><figcaption></figcaption></figure>

<table data-header-hidden><thead><tr><th width="135"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Disabled</strong></td><td>Prevents an offline cache from being used.</td></tr><tr><td><strong>Cache only</strong></td><td>Allows to save a cache of the workspace to improve loading performance. This option disallows the use of the offline mode.</td></tr><tr><td><strong>Read-only</strong></td><td>Allows to view and use entries only. The content of the workspace cannot be modified.</td></tr><tr><td><a href="https://docs.devolutions.net/rdm/data-sources/offline-mode/offline-read-write/"><strong>Read/Write</strong></a></td><td>Allows to view, use, and edit entries. Conflicts caused by offline modifications are managed when back online.</td></tr></tbody></table>

#### Workspace information <a href="#data-source-information" id="data-source-information"></a>

To have a overview of the workspace configuration, open the [workspace information](https://docs.devolutions.net/rdm/commands/file/my-data-source-information/) by going to ***File - My workspace information*** in Remote Desktop Manager. It displays the size of the offline cache file along with the effective modes.

#### Going offline <a href="#going-offline" id="going-offline"></a>

Once the user, user groups (for Devolutions Server workspaces), vault, and workspace settings allow for offline mode, Remote Desktop Manager will prompt for offline mode when the application is unable to reach the workspace. The offline mode can also be toggled manually via ***File*** – ***Go offline*** or by clicking the ***Go offline*** button located in the bottom pane.

#### Grant and deny offline <a href="#grant-and-deny-offline" id="grant-and-deny-offline"></a>

A user must be granted ***Read/Write*** at all levels to allow read/write privileges. Here is a table recapitulating all the settings/permissions along with the effective access they grant:

<table data-header-hidden><thead><tr><th width="183"></th><th width="177"></th><th width="161"></th><th></th></tr></thead><tbody><tr><td><strong>USER PERMISSIONS</strong></td><td><strong>SYSTEM SETTINGS</strong></td><td><strong>VAULT SETTINGS</strong></td><td><strong>EFFECTIVE ACCESS</strong></td></tr><tr><td>Disabled or Read-only or Read/write</td><td>Disabled or Read-only or Read/write</td><td>Allow offline disabled</td><td>Disabled</td></tr><tr><td>Disabled or Read-only or Read/write</td><td>Disabled or Read-only or Read/write</td><td>Allow offline enabled</td><td>Disabled</td></tr><tr><td>Disabled or Read-only or Read/write</td><td>Disabled</td><td>Allow offline enabled</td><td>Disabled</td></tr><tr><td>Disabled</td><td>Disabled or Read-only or Read/write</td><td>Allow offline enabled</td><td>Disabled</td></tr><tr><td>Read-only or Read/write</td><td>Read-only or Read/write</td><td>Allow offline disabled</td><td>Disabled</td></tr><tr><td>Read-only or Read/write</td><td>Read-only or Read/write</td><td>Allow offline enabled</td><td>Read-only</td></tr><tr><td>Read-only or Read/write</td><td>Read-only</td><td>Allow offline enabled</td><td>Read-only</td></tr><tr><td>Read-only</td><td>Read-only or Read/write</td><td>Allow offline enabled</td><td>Read-only</td></tr><tr><td>Read/write</td><td>Read/write</td><td>Allow offline enabled</td><td>Read/write</td></tr></tbody></table>
{% endtab %}

{% tab title="macOS" %}

### Configuration <a href="#configuration-1" id="configuration-1"></a>

1. Open Remote Desktop Manager macOS.
2. Go to the ***properties*** of the workspace.
3. Click ***edit data source*** and navigate to the ***advanced*** tab.
4. Select ***In-memory*** or ***File*** in the ***Caching mode*** drop-down menu.
5. Click ***Ok*** to close the window.

{% hint style="warning" %}
This step cannot be modified remotely once you have exported your workspace settings.
{% endhint %}

<figure><img src="https://cdnweb.devolutions.net/docs/RDMM6011_2024_3.png" alt=""><figcaption></figcaption></figure>

<table data-header-hidden><thead><tr><th width="121"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Disabled</strong></td><td>Prevents offline cache from being used.</td></tr><tr><td><strong>In-Memory</strong></td><td>Uses the offline cache only for recent changes, but prevents it from writing on the disk</td></tr><tr><td><strong>File</strong></td><td>Uses the offline cache only for recent changes. The cache will write on the disk.</td></tr></tbody></table>

6. In the ribbon of Remote Desktop Manager macOS, navigate to ***Administration*** – ***System settings*** – ***Cache/offline***, and set ***Offline mode*** to ***Read-only*** or ***Read/write***.
7. Click ***Ok*** to close the window.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMM6009_2024_3.png" alt=""><figcaption></figcaption></figure>

   <table data-header-hidden><thead><tr><th width="133"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Disabled</strong></td><td>Prevents an offline cache from being used.</td></tr><tr><td><strong>Cache only</strong></td><td>Allows to save a cache of the workspace to improve loading performance. This option disallows the use of the offline mode.</td></tr><tr><td><strong>Read-only</strong></td><td>Allows to view and use entries only. The content of the workspace cannot be modified.</td></tr><tr><td><a href="https://docs.devolutions.net/rdm/data-sources/offline-mode/offline-read-write/"><strong>Read/Write</strong></a></td><td>Allows to view, use, and edit entries. Conflicts caused by offline modifications are managed when back online.</td></tr></tbody></table>

#### Offline vault <a href="#offline-vault-1" id="offline-vault-1"></a>

For each vault, go to ***Administration – Vault settings – Security settings***, and set ***Allow offline*** to ***Yes***.<br>

<figure><img src="https://cdnweb.devolutions.net/docs/RDMM6008_2024_3.png" alt=""><figcaption></figcaption></figure>

This setting is not available in Remote Desktop Manager if the vault security level is set to [***High***](https://docs.devolutions.net/server/web-interface/administration/security-management/vaults/general/).

<figure><img src="https://cdnweb.devolutions.net/docs/DVLS4262_2026_1.png" alt=""><figcaption></figcaption></figure>

#### Enable offline user account <a href="#enable-offline-user-account-1" id="enable-offline-user-account-1"></a>

1. Go to the ribbon of Remote Desktop Manager macOS.
2. Select ***Administration*** – ***Users*** – ***Edit*** – ***Settings***, and set the ***Offline mode*** setting to ***Cache-only***, ***Read-only*** or ***Read/write*** to enable a user account to use offline mode.

{% hint style="info" %}
A user must be granted [***Read/Write*** at all levels](https://docs.devolutions.net/rdm/data-sources/offline-mode/devolutions-server-offline-mode/?tab=macos#grant-and-deny-offline) to allow read/write privileges.
{% endhint %}

<figure><img src="https://cdnweb.devolutions.net/docs/DVLS6007_2024_3.png" alt=""><figcaption></figcaption></figure>

3. Click ***Update*** to close the window.

#### Enable offline user groups <a href="#enable-offline-user-groups-1" id="enable-offline-user-groups-1"></a>

User groups policies (only for Devolutions Server workspaces) must be set to ***Cache-only***, ***Read-only*** or ***Read/write***. Go to ***Administration*** – ***User groups*** – ***Edit*** – ***Settings.***

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW4084_2024_2.png" alt=""><figcaption></figcaption></figure>

<table data-header-hidden><thead><tr><th width="122"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Disabled</strong></td><td>Prevents an offline cache from being used.</td></tr><tr><td><strong>Cache only</strong></td><td>Allows to save a cache of the workspace to improve loading performance. This option disallows the use of the offline mode.</td></tr><tr><td><strong>Read-only</strong></td><td>Allows to view and use entries only. The content of the workspace cannot be modified.</td></tr><tr><td><a href="https://docs.devolutions.net/rdm/data-sources/offline-mode/offline-read-write/"><strong>Read/Write</strong></a></td><td>Allows to view, use, and edit entries. Conflicts caused by offline modifications are managed when back online.</td></tr></tbody></table>

#### Workspace information <a href="#data-source-information-1" id="data-source-information-1"></a>

To have a overview of the workspace configuration, open the [workspace information](https://docs.devolutions.net/rdm/commands/file/my-data-source-information/) by going to ***File - My data source information*** in Remote Desktop Manager macOS.

#### Going offline <a href="#going-offline-1" id="going-offline-1"></a>

Once the user, user groups (for Devolutions Server workspaces), vault, and workspace settings allow for offline mode, Remote Desktop Manager macOS will prompt for offline mode when the application is unable to reach the workspace. The offline mode can also be toggled manually via ***File*** – ***Go offline*** or by clicking the ***Go offline*** button located in the bottom pane.

#### Grant and deny offline <a href="#grant-and-deny-offline-1" id="grant-and-deny-offline-1"></a>

A user must be granted ***Read/Write*** at all levels to allow read/write privileges. Here is a table recapitulating all the settings/permissions along with the effective access they grant:

| **USER PERMISSIONS**                | **SYSTEM SETTINGS**                 | **VAULT SETTINGS**     | **EFFECTIVE ACCESS** |
| ----------------------------------- | ----------------------------------- | ---------------------- | -------------------- |
| Disabled or Read-only or Read/write | Disabled or Read-only or Read/write | Allow offline disabled | Disabled             |
| Disabled or Read-only or Read/write | Disabled or Read-only or Read/write | Allow offline enabled  | Disabled             |
| Disabled or Read-only or Read/write | Disabled                            | Allow offline enabled  | Disabled             |
| Disabled                            | Disabled or Read-only or Read/write | Allow offline enabled  | Disabled             |
| Read-only or Read/write             | Read-only or Read/write             | Allow offline disabled | Disabled             |
| Read-only or Read/write             | Read-only or Read/write             | Allow offline enabled  | Read-only            |
| Read-only or Read/write             | Read-only                           | Allow offline enabled  | Read-only            |
| Read-only                           | Read-only or Read/write             | Allow offline enabled  | Read-only            |
| Read/write                          | Read/write                          | Allow offline enabled  | Read/write           |
| {% endtab %}                        |                                     |                        |                      |
| {% endtabs %}                       |                                     |                        |                      |


# Microsoft Azure SQL offline mode

Follow the steps to lean how to enable [offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/) for a [Microsoft Azure SQL workspace](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-azure-sql/).

{% hint style="info" %}
Some features of Remote Desktop Manager are unavailable while offline. Even with the read/write access mode, you may not be able to perform all actions, such as adding attachments or managing users, since these features are not cached locally. On the other hand, the user vault is still available in offline mode.
{% endhint %}

### Configuration

1. Open Remote Desktop Manager.
2. Go to the ***properties*** of the workspace.
3. Click ***edit workspace*** and navigate to the ***advanced*** tab.
4. Select ***In-memory*** or ***File*** in the ***Caching mode*** drop-down menu.
5. Click ***Save*** to close the window.

This step cannot be modified remotely once you have exported your workspace settings

![](https://cdnweb.devolutions.net/docs/RDMW6032_2024_3.png)

<table data-header-hidden><thead><tr><th width="155"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Disabled</strong></td><td>Prevents offline cache from being used.</td></tr><tr><td><strong>In-Memory</strong></td><td>Uses the offline cache only for recent changes, but prevents it from writing on the disk</td></tr><tr><td><strong>File</strong></td><td>Uses the offline cache only for recent changes. The cache will write on the disk.</td></tr></tbody></table>

6. Go to the ribbon of Remote Desktop Manager.
7. Select ***Administration*** – ***System settings*** – ***Cache/Offline***, and set ***Offline mode*** to ***Cache-only***, ***Read-only*** or ***Read/write***.
8. Click ***Save*** to close the window.

   <figure><img src="https://cdnweb.devolutions.net/docs/image.png" alt=""><figcaption></figcaption></figure>

<table data-header-hidden><thead><tr><th width="140"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Disabled</strong></td><td>Prevents an offline cache from being used.</td></tr><tr><td><strong>Cache only</strong></td><td>Allows to save a cache of the workspace in order to improve loading performance. This option disallows the use of the offline mode.</td></tr><tr><td><strong>Read-only</strong></td><td>Allows to view and use entries only. The content of the workspace cannot be modified.</td></tr><tr><td><a href="https://docs.devolutions.net/rdm/workspaces/offline-mode/offline-read-write/"><strong>Read/Write</strong></a></td><td>Allows to view, use, and edit entries. Conflicts caused by offline modifications are managed when back online.</td></tr></tbody></table>

#### Vault settings

1. For each vault, go to ***Administration*** – ***Vault settings*** – ***Security settings***, and set ***Allow offline*** to ***Yes***.
2. Click ***Update*** to save and close the window.

   ![](https://cdnweb.devolutions.net/docs/image.png)

#### User account offline mode setting

To enable a user account to use offline mode, go to ***Administration*** – ***Users*** – ***Edit*** – ***Settings***, and set the ***Offline mode*** setting to ***Cache-only***, ***Read-only*** or ***Read/write***.<br>

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW4088_2024_2.png" alt=""><figcaption></figcaption></figure>

{% hint style="info" %}
A user must be granted [Read/Write at all levels](#Grant-and-deny-offline) to allow read/write privileges.
{% endhint %}

#### Workspace information

To have a overview of the workspace configuration, open the [Workspace information](https://docs.devolutions.net/rdm/commands/file/my-workspace-information/) by going to ***File - My workspace information*** in Remote Desktop Manager. It displays the size of the offline cache file along with the effective modes.

#### Going offline

Remote Desktop Manager will prompt for offline mode when the application is unable to reach the workspace. The offline mode can also be toggled manually via ***File*** – ***Go offline*** or by clicking the ***Go offline*** button located in the bottom pane.

#### Grant and deny offline

A user must be granted ***Read/Write*** at all levels to allow read/write privileges. Here is a table recapitulating all the settings/permissions along with the effective access they grant:

| **USER PERMISSIONS**                | **SYSTEM SETTINGS**                 | **VAULT SETTINGS**     | **EFFECTIVE ACCESS** |
| ----------------------------------- | ----------------------------------- | ---------------------- | -------------------- |
| Disabled or Read-only or Read/write | Disabled or Read-only or Read/write | Allow offline disabled | Disabled             |
| Disabled or Read-only or Read/write | Disabled or Read-only or Read/write | Allow offline enabled  | Disabled             |
| Disabled or Read-only or Read/write | Disabled                            | Allow offline enabled  | Disabled             |
| Disabled                            | Disabled or Read-only or Read/write | Allow offline enabled  | Disabled             |
| Read-only or Read/write             | Read-only or Read/write             | Allow offline disabled | Disabled             |
| Read-only or Read/write             | Read-only or Read/write             | Allow offline enabled  | Read-only            |
| Read-only or Read/write             | Read-only                           | Allow offline enabled  | Read-only            |
| Read-only                           | Read-only or Read/write             | Allow offline enabled  | Read-only            |
| Read/write                          | Read/write                          | Allow offline enabled  | Read/write           |


# Microsoft SQL Server offline mode

Follow the steps to lean how to enable [offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/) for a [Microsoft SQL Server workspace](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/microsoft-sql-server/configure/).

{% hint style="info" %}
Some features of Remote Desktop Manager are unavailable while offline. Even with the read/write access mode, you may not be able to perform all actions, such as adding attachments or managing users, since these features are not cached locally. On the other hand, the user vault is still available in offline mode.
{% endhint %}

### Configuration

1. Open Remote Desktop Manager.
2. Go to the ***Properties*** of the workspace.
3. Click ***Edit workspace*** and navigate to the ***Advanced*** tab.
4. Select ***In-memory*** or ***File*** in the ***Caching mode*** drop-down menu.
5. Click ***Save*** to close the window.

This step cannot be modified remotely once you have exported your workspace settings

![](https://cdnweb.devolutions.net/docs/RDMW6030_2024_3.png)

<table data-header-hidden><thead><tr><th width="138"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Disabled</strong></td><td>Prevents offline cache from being used.</td></tr><tr><td><strong>In-memory</strong></td><td>Uses the offline cache only for recent changes, but prevents it from writing on the disk</td></tr><tr><td><strong>File</strong></td><td>Uses the offline cache only for recent changes. The cache will write on the disk.</td></tr></tbody></table>

6. Go to the ribbon of Remote Desktop Manager.
7. Select ***Administration*** – ***System settings*** – ***Cache/Offline***, and set ***Offline mode*** to ***Cache-only***, ***Read-only*** or ***Read/write***.
8. Click ***Save*** to close the window.

   <figure><img src="https://cdnweb.devolutions.net/docs/image.png" alt=""><figcaption></figcaption></figure>

<table data-header-hidden><thead><tr><th width="146"></th><th></th></tr></thead><tbody><tr><td><strong>OPTION</strong></td><td><strong>DESCRIPTION</strong></td></tr><tr><td><strong>Disabled</strong></td><td>Prevents an offline cache from being used.</td></tr><tr><td><strong>Cache only</strong></td><td>Allows to save a cache of the workspace in order to improve loading performance. This option disallows the use of the offline mode.</td></tr><tr><td><strong>Read-only</strong></td><td>Allows to view and use entries only. The content of the workspace cannot be modified.</td></tr><tr><td><a href="https://docs.devolutions.net/rdm/workspaces/offline-mode/offline-read-write/"><strong>Read/Write</strong></a></td><td>Allows to view, use, and edit entries. Conflicts caused by offline modifications are managed when back online.</td></tr></tbody></table>

#### Vault **settings**

1. For each vault, go to ***Administration*** – ***Vault settings*** – ***Security settings***, and set ***Allow offline*** to ***Yes***.
2. Click ***Update*** to save and close the window.

![](https://cdnweb.devolutions.net/docs/RDMW4086_2024_2.png)

#### User account offline mode setting

To enable a user account to use offline mode, go to ***Administration*** – ***Users*** – ***Edit*** – ***Settings***, and set the ***Offline mode*** setting to ***Cache-only***, ***Read-only*** or ***Read/write***.<br>

<figure><img src="https://cdnweb.devolutions.net/docs/RDMW4088_2024_2.png" alt=""><figcaption></figcaption></figure>

{% hint style="info" %}
A user must be granted [Read/Write at all levels](#Grant-and-deny-offline) to allow read/write privileges.
{% endhint %}

#### Workspace information

To have a overview of the workspace configuration, open the [Workspace information](https://docs.devolutions.net/rdm/commands/file/my-workspace-information/) by going to ***File - My workspace information*** in Remote Desktop Manager. It displays the size of the offline cache file along with the effective modes.

#### Going offline

Remote Desktop Manager will prompt for offline mode when the application is unable to reach the workspace. The offline mode can also be toggled manually via ***File*** – ***Go offline*** or by clicking the ***Go offline*** button located in the bottom pane.

#### Grant and deny offline

A user must be granted ***Read/Write*** at all levels to allow read/write privileges. Here is a table recapitulating all the settings/permissions along with the effective access they grant:

| **USER PERMISSIONS**                | **SYSTEM SETTINGS**                 | **VAULT SETTINGS**     | **EFFECTIVE ACCESS** |
| ----------------------------------- | ----------------------------------- | ---------------------- | -------------------- |
| Disabled or Read-only or Read/write | Disabled or Read-only or Read/write | Allow offline disabled | Disabled             |
| Disabled or Read-only or Read/write | Disabled or Read-only or Read/write | Allow offline enabled  | Disabled             |
| Disabled or Read-only or Read/write | Disabled                            | Allow offline enabled  | Disabled             |
| Disabled                            | Disabled or Read-only or Read/write | Allow offline enabled  | Disabled             |
| Read-only or Read/write             | Read-only or Read/write             | Allow offline disabled | Disabled             |
| Read-only or Read/write             | Read-only or Read/write             | Allow offline enabled  | Read-only            |
| Read-only or Read/write             | Read-only                           | Allow offline enabled  | Read-only            |
| Read-only                           | Read-only or Read/write             | Allow offline enabled  | Read-only            |
| Read/write                          | Read/write                          | Allow offline enabled  | Read/write           |


# Offline read and write

The ***Read/Write*** offline mode allows the user to add, edit and delete entries while the workspace is offline. Those changes are saved locally and synchronized with the workspace once it is back online.

See [Offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/) to know which permissions to grant in order for this to work for each workspace.

{% hint style="info" %}
Some functionalities are not available while offline, but the [user vault](https://docs.devolutions.net/rdm/user-interface/navigation-pane/user-vault/) is still accessible.
{% endhint %}

### Offline edits workflow

1. Connect to the workspace, and click on ***File – Go offline***.
2. Make the desired edits and save them. Go back online by clicking on ***File – Go online*** once the changes are completed.
3. Accept or reject the offline changes in the ***Offline edits*** window. The ***Compare session modifications*** button allows for a side-by-side comparison of the changes.

   <figure><img src="https://cdnweb.devolutions.net/docs/RDMW4341_2025_1.png" alt=""><figcaption></figcaption></figure>
4. Click on ***Ok*** once the changes have been accepted or rejected to satisfaction.ve

{% hint style="warning" %}
When conflicts occur, the user causing them must decide to accept or reject the changes. The different versions of the entry can be compared to view which changes has been made.
{% endhint %}

### Compare versions of an entry

Click the ***Compare session modifications*** button to compare the versions of a conflicted entry. Analyze the XML structure of the entry to decide to ***Accept*** or ***Reject*** the changes.

The content on the left represents the entry retrieved online, and the content on the right represents the local version of the entry edited in Offline mode.


# Managing credentials

Depending on your organization's security policies, there are several methods for handling credentials. We support a wide range of scenarios, with the most popular listed below. It is important to note that these credentials are used for connecting to remote hosts, not for launching Remote Desktop Manager Windows.

{% hint style="info" %}
Some of the following options are not available in the Free edition of Remote Desktop Manager, as they rely on features provided by [advanced workspaces](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/?tab=macos).
{% endhint %}

### Key points

Below are a few key points that the solution administrator must be aware of:

<table><thead><tr><th width="229">Key points</th><th>Description</th></tr></thead><tbody><tr><td><strong>Password visibility</strong></td><td>You can store passwords in a credentials entry (username/password entry). By default, the password is stored in encrypted form and is masked in the interface. This makes the password usable for connections without exposing it directly. Depending on the credentials entry type and the user’s permissions, the password may or may not be viewable (for example, by clicking the "eye" icon). Multiple credentials entry types are provided. It is important to choose the type carefully based on administrative and security needs.</td></tr><tr><td><strong>Credentials set on folders</strong></td><td>Folders can have defined credentials, useful for reusing the same credentials across a branch of the network infrastructure. To use these, child sessions must be adjusted to use inherited credentials.</td></tr><tr><td><strong>Entry location</strong></td><td>Storing entries in the tree view allows users with View permissions on that entry (or folder by inheritance) to use them, enabling credential sharing with team members. A <a href="https://docs.devolutions.net/rdm/user-interface/navigation-pane/user-vault/">user vault</a> is available for storing personal information privately. These credentials can still be accessed publicly by referencing them or through User-specific settings.</td></tr><tr><td><strong>User-specific settings</strong></td><td><a href="https://docs.devolutions.net/rdm/commands/edit/setting-overrides/">User-specific settings</a> provide partial overrides for entry settings, including credentials. Overrides allow selecting credentials directly or linking to credentials stored elsewhere, like in the <a href="https://docs.devolutions.net/rdm/user-interface/navigation-pane/user-vault/">user vault</a>.</td></tr></tbody></table>

### Common scenarios

Here are the most common scenarios and their resolutions. In most cases, the preferred approach is for sessions to use inherited credentials. This allows the session to traverse up the hierarchy until it finds a set of credentials—whether they are defined, linked, or overridden at a higher level.

<table><thead><tr><th width="380">SCENARIO</th><th width="359">STRATEGY</th></tr></thead><tbody><tr><td>One set of credentials is used by all of the staff, be it for the whole system or for a branch in your tree view (customer, department, etc.).</td><td>Set the credentials on the <a href="https://docs.devolutions.net/rdm/commands/edit/#setting-overrides">vault settings</a>. All children use inherited credentials.</td></tr><tr><td>Each user has their own credentials for many different branches (often corresponding to customers/departments, etc.).</td><td>Make use of the <a href="https://docs.devolutions.net/rdm/commands/edit/setting-overrides/">user-specific settings</a> on each branch. All children use inherited credentials.</td></tr><tr><td>Each user has its own credentials managed by an administrator.</td><td>This solution involves a little more work. The administrator must create a folder for each user, then grant permissions only to that user. The user will then use <a href="https://docs.devolutions.net/rdm/commands/edit/setting-overrides/">user-specific settings</a> to specify that the credentials stored in that folder are used to override what is defined in the entries.</td></tr><tr><td>Each team uses the same credentials.</td><td>As above, but all team members have access to the folder. They all have to use the <a href="https://docs.devolutions.net/rdm/commands/edit/setting-overrides/">user-specific settings</a>.</td></tr><tr><td>Each user uses their domain account.</td><td>Configure sessions to use <a href="https://docs.devolutions.net/rdm/commands/file/my-account-settings/my-personal-credentials/">My personal credentials</a>. Each user will be prompted to define them once per workstation that they use.</td></tr></tbody></table>

#### See also

* [Devolutions Academy – Creating and managing different entries](https://academy.devolutions.net/student/activity/3266637)
* [Devolutions Academy – Breaking down common scenarios: mutli-client environment management](https://academy.devolutions.net/student/activity/3380650)
* [Devolutions Academy – Understanding inheritance on folders and entries](https://academy.devolutions.net/student/activity/3266647)


# Concepts

![](https://cdnweb.devolutions.net/docs/MARKETING_sysadminotaur-104-final.apk.png)

Mastering the concepts underpinning Remote Desktop Manager saves time for both users and administrators. Do you need help with what to learn next? This guide organizes the concepts to lead you along your Remote Desktop Manager journey.

* [Basic concepts](https://docs.devolutions.net/rdm/concepts/account-discovery/)
* [Intermediate concepts](https://docs.devolutions.net/rdm/concepts/account-lifecycle-policy/)
* [Advanced concepts](https://docs.devolutions.net/rdm/concepts/action-property/)


# Basic concepts

Basic concepts are just that, easy to grasp! They cover essential features and fundamental principles to help beginners and refresh the basics for others.

* [Add-ons](https://docs.devolutions.net/rdm/concepts/basic-concepts/add-ons/)
* [Contacts](https://docs.devolutions.net/rdm/concepts/basic-concepts/contacts/)
* [Credential management](https://docs.devolutions.net/rdm/concepts/basic-concepts/credential-management/)
* [Documents and attachments](https://docs.devolutions.net/rdm/concepts/basic-concepts/documents-attachments/)
* [Folders](https://docs.devolutions.net/rdm/concepts/basic-concepts/folders/)
* [Import and export](https://docs.devolutions.net/rdm/concepts/basic-concepts/import-export/)
* [Information](https://docs.devolutions.net/rdm/concepts/basic-concepts/information/)
* [Password management](https://docs.devolutions.net/rdm/concepts/basic-concepts/password-management/)
* [Remote connection management](https://docs.devolutions.net/rdm/concepts/basic-concepts/remote-connection-management/)
* [Search](https://docs.devolutions.net/rdm/concepts/basic-concepts/search/)
* [Vaults](https://docs.devolutions.net/rdm/concepts/basic-concepts/vaults/)
* [VPNs, tunnels, gateways, and proxies](https://docs.devolutions.net/rdm/concepts/basic-concepts/vpns-tunnels-gateways-proxies/)
* [Workspaces](https://docs.devolutions.net/rdm/concepts/basic-concepts/workspaces/)


# Add-ons

Add-ons extend Remote Desktop Manager with optional entry types, tools, and integrations so you can tailor the platform to your stack. They let you add capabilities such as new connection technologies, external utilities, or credential and workspace providers without changing your core configuration.

Use add-ons to streamline remote workflows, integrate specialized admin tools, and support vendor-specific systems while maintaining consistent security, auditing, and organization.

#### Related topics

* [Tools tab](https://docs.devolutions.net/rdm/commands/tools/#managers)

#### See also

* [Devolutions Academy - Using Add-Ons](https://academy.devolutions.net/student/path/1916054/activity/2667049)
* [Devolutions Blog - Remote Desktop Manager Add-on Manager](https://blog.devolutions.net/2019/06/improved-feature-rdm-add-on-manager/)


# Contacts

Use contacts to store details about people and services, and link them to other entries so you can centralize who should be reached during operations, incidents, and other scenarios. In Remote Desktop Manager, create contact entries for vendors, site owners, or on-call staff, then reference them from connections, credentials, or IT assets to save time during troubleshooting. You can add contacts interactively, import them in bulk, or automate updates with Devolutions PowerShell.

#### Related topics

* [Import contacts](https://docs.devolutions.net/rdm/commands/file/import/contacts/#import-from-contact)


# Credential management

Credential management in Remote Desktop Manager centralizes credentials and injects them into sessions without exposing passwords to users. Store credentials in a vault, link them to multiple sessions, and change them without editing each entry. For teams, combine permissions with role-based access control to limit who can view or use credentials.

#### Related topics

* [Create an entry](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/)
* [Entry credentials options](https://docs.devolutions.net/rdm/commands/edit/entry-credentials-options/)
* [Managing credentials](https://docs.devolutions.net/rdm/getting-started/managing-credentials/)
* [Using the Devolutions Password Manager browser extension](https://docs.devolutions.net/password-manager/browser-extension/remote-desktop-manager/using-the-devolutions-password-manager-browser-extension/)

#### See also

* [Devolutions Academy – Configuring and managing credential entries](https://academy.devolutions.net/student/path/1916054/activity/2667052)
* [Devolutions Academy – Securely sharing credentials with Devolutions Send](https://academy.devolutions.net/student/page/2152433-securely-sharing-credentials-with-devolutions-send?curriculum_activity_id=3093085\&path_id=2007290\&sid=640e2111-bebf-4f2e-9968-d9f4ea5168d8\&sid_i=4)
* [Devolutions Academy – Simplifying credential management with Devolutions Password Manager](https://academy.devolutions.net/student/page/2152390-simplifying-credential-management-with-devolutions-workspace?sid=640e2111-bebf-4f2e-9968-d9f4ea5168d8\&sid_i=3)


# Documents and attachments

Documents and attachments let you store files alongside entries so critical information travel with the connection, credential, or asset. Attach runbooks, diagrams, license files, or exports to keep everything in context and controllable through folder or vault permissions. Upload files manually, link external documents, or manage them in bulk with import tools.

#### Related topics

* [Attachments](https://docs.devolutions.net/rdm/commands/window/attachments/)

#### See also

* [Devolutions Academy – Breaking down common scenarios: automated asset and inventory tracking](https://academy.devolutions.net/student/activity/3380802)
* [Devolutions Academy - Managing Documentation and Attachments](https://academy.devolutions.net/student/path/1916054/activity/2667047)
* [Devolutions Academy – Must-know features to boost productivity](https://academy.devolutions.net/student/activity/3266674)


# Folders

Folders are containers used to organize entries, apply inheritance, and delegate permissions in a way that matches your environment. Group items by client, site, or technology, then inherit shared settings like VPN, gateways, or credentials to remove repetitive configuration. Assign permissions at folder level to control access and simplify audits.

#### Related topics

* [Inheritance in Remote Desktop Manager](https://docs.devolutions.net/rdm/kb/knowledge-base/inheritance/)
* [Folders and dynamic variables](https://docs.devolutions.net/rdm/kb/how-to-articles/multiple-types-connections/folders-dynamic-variables/)
* [Add a Smart Folder](https://docs.devolutions.net/rdm/kb/how-to-articles/create-saved-searches-smart-folders/#add-a-smart-folder)

#### See also

* [Devolutions Academy – Breaking down common scenarios: mutli-client environment management](https://academy.devolutions.net/student/activity/3380650)
* [Devolutions Academy - Organizing Entries with Folders](https://academy.devolutions.net/student/path/1916054/activity/2667044)
* [Devolutions Academy - Organizing resources with folders and categories](https://academy.devolutions.net/student/page/3266641-organizing-resources-with-folders-and-categories?sid=b1f8c0eb-82d6-4073-920d-c13023a27d05\&sid_i=0)
* [Devolutions Academy – Understanding inheritance on folders and entries](https://academy.devolutions.net/student/activity/3266647)


# Import and export

Import and export accelerate setup and migration by moving entries and configurations between workspaces and Remote Desktop Manager instances. Use .CSV, .JSON, or .RDM, the native format, to bring in sessions, credentials, contacts, or to back up and replicate vault structures. Run imports interactively or script repeatable migrations with Devolutions PowerShell.

#### Related topics

* [Export and import entries](https://docs.devolutions.net/rdm/kb/how-to-articles/export-import-entries/)
* [Export](https://docs.devolutions.net/rdm/commands/file/export/)
* [Import](https://docs.devolutions.net/rdm/commands/file/import/)
* [Import and export a workspace](https://docs.devolutions.net/rdm/workspaces/import-export/)

#### See also

* [Devolutions Academy – Built-in generators: passwords, certificates, ports, and network scan](https://academy.devolutions.net/student/activity/3381288)
* [Devolutions Academy – Importing and Exporting Data](https://academy.devolutions.net/student/path/1925039/activity/3139557)
* [Devolutions Academy – Importing sessions and credentials](https://academy.devolutions.net/student/activity/3266668)
* [YouTube - Step 6: Import your Data – Getting Started with Remote Desktop Manager for Individuals](https://youtu.be/x4NLsBvF2tU?si=fssLciYOuY_7EExH)


# Information

An information entry centralizes non-secret business data such as license keys, door codes, or procedures that teams need to reference. Restrict who can edit or view these records using folder or vault permissions, and keep them near related sessions or assets for faster support.

#### See also

* [Devolutions Academy - Managing Information Entries](https://academy.devolutions.net/student/path/1916054/activity/2667048)


# Password management

Password management in Remote Desktop Manager stores, updates, and injects credentials so users can connect without seeing or retyping secrets. Link a credential to many sessions, enforce policies with role-based access control, and delegate use without disclosure. Integrate with Devolutions Cloud, Devolutions Server, or external managers to streamline secure access.

#### Related topics

* [Create an entry](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/)
* [OTP usage with entries](https://docs.devolutions.net/rdm/kb/how-to-articles/otp-usage-entries/)
* [Using Devolutions Password Manager browser extension](https://docs.devolutions.net/password-manager/browser-extension/remote-desktop-manager/using-the-devolutions-password-manager-browser-extension/)
* [Password policy](https://docs.devolutions.net/rdm/commands/administration/system-settings/password-management/allow-password-access-external-system/)

#### See also

* [Devolutions Academy - Configuring and Managing Credential Entries](https://academy.devolutions.net/student/path/1916054/activity/2667052)
* [Do You Need ONLY a Password Manager? (Hint: Probably Not!)](https://blog.devolutions.net/2023/02/do-you-need-only-a-password-manager-hint-probably-not/)


# Remote connection management

Remote connection management centralizes RDP, SSH, VNC, web, and other session types in one secure, audited launcher. Define templates, inherit shared settings, and trigger prerequisites such as VPNs or gateways automatically. Use playlists for daily routines, and automate session creation or maintenance with Devolutions PowerShell.

At Devolutions, the remote connection management package brings together Remote Desktop Manager, Devolutions Gateway, Devolutions Launcher, Devolutions Cloud, Devolutions Password Manager, and Devolutions Server. Store and govern entries in Devolutions Cloud or Devolutions Server, launch connections with Remote Desktop Manager (or Devolutions Launcher), route secure tunnels through Devolutions Gateway, and work across devices with Devolutions Password Manager. This reduces manual steps, helps enforce least privilege, and speeds troubleshooting.

#### Related topics

* [Add-ons](https://docs.devolutions.net/rdm/commands/tools/#managers)
* [AD Console](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/#create-an-entry)
* [ARD](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/#create-an-entry)
* [FTP/SFTP](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/#create-an-entry)
* [HyperV Console](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/#create-an-entry)
* [Quick connect](https://docs.devolutions.net/rdm/commands/view/quick-connect/)
* [RDP](https://docs.devolutions.net/rdm/commands/actions/rdp/)
* [Remote PowerShell](https://docs.devolutions.net/rdm/commands/tools/powershell/)
* [SCP](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/#create-an-entry)
* [SSH](https://docs.devolutions.net/rdm/commands/edit/creating-new-entry/#create-an-entry)
* [Telnet](https://docs.devolutions.net/rdm/commands/actions/telnet/)
* [Terminal Server](https://docs.devolutions.net/rdm/installation/client/terminal-services/)
* [WOL](https://docs.devolutions.net/rdm/kb/knowledge-base/wake-on-lan/)
* [Website](https://docs.devolutions.net/password-manager/browser-extension/remote-desktop-manager/user-interface/side-menu/add-website/)

#### See also

* [Devolutions Academy - Configuring and Managing Remote Connection Entries](https://academy.devolutions.net/student/path/1916054/activity/2667051)
* [Devolutions Academy – Remote desktop management and IT operations](https://academy.devolutions.net/student/path/2523246-remote-connection-management)
* [YouTube - Remote Desktop Manager - The remote connection management toolbox for IT pros](https://www.youtube.com/watch?v=-uz8dvo9tpE)
* [Devolutions Blog - 5 Reasons Why Good Remote Connection Management Solution is Essential](https://blog.devolutions.net/2022/02/5-reasons-why-good-remote-connection-management-solution-is-essential/)


# Search

Search finds entries fast across vaults, with quick search for everyday work and advanced filters for precise investigations. Narrow results by type, tag, folder, or property to locate sessions, credentials, or documents in seconds. Use multi-vault search to report across teams and environments.

#### Related topics

* [Search](https://docs.devolutions.net/rdm/commands/view/search/)
* [Quick search](https://docs.devolutions.net/rdm/commands/view/search/quick-search/)
* [Advanced search](https://docs.devolutions.net/rdm/commands/view/search/advanced/)
* [Multi vault search](https://docs.devolutions.net/rdm/commands/view/search/multi-vault/)
* [Documentation search](https://docs.devolutions.net/rdm/commands/view/search/documentation/)

#### See also

* [Devolutions Academy - Efficient Search Options for Managing Entries](https://academy.devolutions.net/student/path/1916054/activity/2667055)
* [Devolutions Academy - Finding entries faster with search tools](https://academy.devolutions.net/student/activity/3407934-finding-entries-faster-with-search-tools)


# Vaults

Vaults segment data within a workspace so you can separate clients, teams, or environments and assign permissions appropriately. Create shared vaults for projects, leverage \[user vault] for personal items, and rely on the System Vault for common tools and scripts. Combine vault-level permissions with folders to tighten control and improve performance.

#### Related topics

* [Vaults overview](https://docs.devolutions.net/rdm/commands/administration/vaults-overview/)
* [Batch edit in Remote Desktop Manager](https://docs.devolutions.net/rdm/commands/edit/batch-edit/#entryfolder-selection)
* [User vault](https://docs.devolutions.net/rdm/user-interface/navigation-pane/user-vault/)
* [Change Master Key](https://docs.devolutions.net/rdm/commands/file/change-master-key/)

#### See also

* [Devolutions Academy - Understanding Vaults](https://academy.devolutions.net/student/path/1916054/activity/2679481)
* [Devolutions Blog - Back to Basics: Using Vaults in Remote Desktop Manager](https://blog.devolutions.net/2019/09/back-to-basics-using-vaults-in-remote-desktop-manager/)
* [YouTube - Easily Create a Vault Template - RDM Pro Tip 002](https://youtu.be/0GwzZJ-JS7Q?si=rPyZivjmG5Ft5Eif)


# VPNs, tunnels, gateways, and proxies

VPNs, tunnels, gateways, and proxies control the network path to targets and can be launched automatically to secure remote sessions. In Remote Desktop Manager, attach these components to folders or sessions and inherit them across your structure to remove duplication. Combine with Devolutions Gateway for just-in-time access and auditability.

#### Related topics

* [Configure a VPN for multiple sessions](https://docs.devolutions.net/rdm/kb/how-to-articles/configure-vpn-multiple-sessions/)
* [VPN groups](https://docs.devolutions.net/rdm/kb/how-to-articles/vpn-group/)
* [Tools](https://docs.devolutions.net/rdm/commands/tools/#managers)

#### See also

* [Remote Desktop Manager Jump](https://docs.devolutions.net/resources/devolutions-agent/jump-host/)
* [What is Remote Desktop Manager Agent?](https://docs.devolutions.net/rdm/ribbon-menu-bar/tools/more-tools/rdm-jump-deprecated/)
* [Devolutions Academy – Breaking down common scenarios: remote access for field work](https://academy.devolutions.net/student/activity/3380820)
* [Devolutions Academy – Enhancing RDM Free security](https://academy.devolutions.net/student/activity/3266658)
* [Devolutions Academy – Managing VPNs, Tunnels, Gateways, and Proxies](https://academy.devolutions.net/student/path/1916054/activity/2667053)
* [Devolutions Academy – Launch remote sessions via a VPN or a Devolutions Gateway](https://academy.devolutions.net/student/page/2563008-rdm-quick-tip-launch-remote-sessions-via-a-vpn-or-a-devolutions-gateway)


# Workspaces

Remote Desktop Manager requires a database (or file) to centralize your connections, credentials, and information. That database, once connected to Remote Desktop Manager, acts as a workspace and keeps data synchronized between the app and the database. Because Remote Desktop Manager supports multiple workspace types, including our advanced workspaces Devolutions Cloud and Devolutions Server, respectively, it offers flexible and secure options for maintaining and sharing a single source of truth.

#### Related topics

* [Getting started](https://docs.devolutions.net/rdm/getting-started/)
* [Workspaces](https://docs.devolutions.net/rdm/workspaces/)

#### See also

* [Import and export a workspace](https://docs.devolutions.net/rdm/workspaces/import-export/)


# Intermediate concepts

Intermediate concepts bridge the gap between fundamentals and more advanced topics.

* [Batch operations](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/batch-operations/)
* [Custom fields](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/custom-fields/)
* [Documentation](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/documentation/)
* [External password managers integration](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/external-password-managers-integration/)
* [Host linking and host management](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/host-linking-host-management/)
* [Inheritance](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/inheritance/)
* [IT asset](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/it-asset/)
* [Offline](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/offline/)
* [Override settings](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/override-settings/)
* [Password policies](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/password-templates/)
* [Playlists](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/play-lists/)
* [Remote management](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/remote-management/)
* [SSH key](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/ssh-key/)
* [Tags](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/tags/)
* [Tasks](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/tasks/)
* [Templates](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/templates/)
* [Variables](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/variables/)


# Batch operations

Batch operations in Remote Desktop Manager speed up large-scale changes by editing many entries in a single action. Select multiple items in a vault to apply consistent updates to common properties such as linked credentials, tags, VPN settings, and other metadata; or to move and delete entries in one step.

By reducing repetitive edits, batch operations save time, minimize errors, and help maintain uniform configuration across your environment.

#### Related topics

* [Batch edit](https://docs.devolutions.net/rdm/commands/edit/batch-edit/#batch-edit-options)
* [Batch grant access (permissions)](https://docs.devolutions.net/rdm/commands/administration/system-settings/vault-management/default-permissions/batch-grant-access/)
* [Batch operations](https://docs.devolutions.net/rdm/commands/edit/batch-edit/#batch-edit-options)
* [Inheritance](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/inheritance/)
* [Network scan](https://docs.devolutions.net/rdm/commands/file/import/network-scan/)
* [Templates](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/templates/)

#### See also

* [Devolutions Academy – Comparing inheritance, batch edit, and batch operations using templates](https://academy.devolutions.net/student/activity/2815880-comparing-inheritance-batch-edit-and-batch-operations-using-templates)
* [Devolutions Academy - Using Batch Operations](https://academy.devolutions.net/student/path/1925039/activity/2667194)
* [Devolutions Academy - Speeding through edits with batch operations](https://academy.devolutions.net/student/activity/3407938-speeding-through-edits-with-batch-operations)


# Custom fields

Custom fields provide flexibility by allowing you to add personalized data when default fields are not sufficient. They can store a wide range of information tailored to your needs, whether for technical details, notes, or business-specific values.

To enhance security, custom fields can be encrypted, making them a safe place to keep sensitive information. You also have full control over field names and content, ensuring they match your workflow. In Remote Desktop Manager, custom fields can be linked with variables to simplify data reuse and automation across entries.

This versatility makes custom fields especially useful for teams that need to centralize unique data points without compromising security or consistency.

#### Related topics

* [Copy buttons for Custom Fields](https://docs.devolutions.net/rdm/kb/how-to-articles/copy-buttons-custom-fields/)

#### See also

* [Create a Custom Field Report](https://docs.devolutions.net/powershell/rdm-powershell/create-custom-field-report/)
* [Devolutions Academy - Use custom fields and variables in Remote Desktop Manager](https://academy.devolutions.net/student/activity/3432600-use-custom-fields-and-variables-in-remote-desktop-manager)


# Documentation

In-app documentation lets you create rich-text pages or Markdown stored in advanced workspaces for quick, in-context reference. Use it to capture procedures, runbooks, checklists, and troubleshooting notes directly where your team works in Remote Desktop Manager.

Documentation pages can be secured like any other item, benefiting from workspace permissions and auditability. Embed links, code snippets, and images, and organize content by folder or vault to keep context clear. This keeps knowledge current, reduces context switching, and helps new team members follow standardized steps with confidence.

#### Related topics

* [Documentation](https://docs.devolutions.net/rdm/user-interface/content-area/dashboards/dashboard-tabs/documentation/)


# External password managers integration

Advanced workspaces integrate with external password managers so you can fetch credentials and link them to connections in Remote Desktop Manager Windows.

This is especially useful when managing large credential sets. You can create a single entry that allows access to retrieve the provider's full vault or link an entry to a specific credential for fine grained control. Remote Desktop Manager does not keep credentials in memory, improving security and reducing risk.

#### Supported password managers

* [1Password](https://docs.devolutions.net/rdm/kb/how-to-articles/configure-1password-integrated-mode/)
* [Bitwarden](https://docs.devolutions.net/rdm/kb/knowledge-base/entry-settings/configure-bitwarden-entry/)
* Cerby
* [CyberArk](https://docs.devolutions.net/rdm/kb/how-to-articles/cyberark-entry-types/)
* Dashlane
* [Delinea Secret Server](https://docs.devolutions.net/rdm/kb/knowledge-base/delinea-secret-server-sso/)
* Dropbox Passwords
* [Hashicorp Vault](https://docs.devolutions.net/rdm/kb/knowledge-base/entry-settings/hashicorpvault-entry/)
* Hudu
* IT Glue
* IT Portal
* [KeePass](https://docs.devolutions.net/rdm/kb/how-to-articles/configure-keepass-rdm/)
* [Keeper](https://docs.devolutions.net/rdm/kb/how-to-articles/keeper-credential-entry-settings/)
* [LAPS](https://docs.devolutions.net/rdm/kb/how-to-articles/configure-laps-custom-credential-entry/)
* [LastPass](https://docs.devolutions.net/rdm/kb/how-to-articles/lastpass-credentials-brokering/)
* Netwrix Password Secure
* One Identity Safeguard
* [Passbolt](https://docs.devolutions.net/rdm/kb/how-to-articles/configure-passbolt-entry/)
* [Password Depot](https://docs.devolutions.net/rdm/kb/knowledge-base/entry-settings/configure-password-depot-entry/)
* [Password Manager Pro](https://docs.devolutions.net/rdm/kb/how-to-articles/configure-password-manager-pro/)
* Passwordstate
* Pleasant Password Server
* Proton Pass
* [Psono](https://docs.devolutions.net/rdm/kb/how-to-articles/configure-psono-rdm/)
* RoboForm
* Sticky Password
* TeamPass
* Topicus KeyHub
* True Key
* [Windows Credential Manager](https://docs.devolutions.net/rdm/kb/knowledge-base/windows-credential-manager/)
* Zoho Vault


# Host linking and host management

Host linking centralizes connection settings in a single host entry so you can launch RDP, SSH, or PowerShell without duplication. In Remote Desktop Manager, define one host and attach multiple connection types, then reuse templates to standardize options across environments.

Link credentials to hosts to avoid hardcoded usernames and passwords, simplify rotations, and improve security. This model reduces maintenance, keeps entries consistent, and accelerates onboarding for teams managing many servers.

#### Related topics

* [Connections](https://docs.devolutions.net/rdm/user-interface/content-area/embedded-sessions/)
* [Entry credentials options](https://docs.devolutions.net/rdm/commands/edit/entry-credentials-options/)
* [Inheritance](https://docs.devolutions.net/rdm/kb/knowledge-base/inheritance/)
* [Managing credentials](https://docs.devolutions.net/rdm/getting-started/managing-credentials/)
* [Templates](https://docs.devolutions.net/rdm/commands/file/templates/)


# Inheritance

Inheritance lets lower-level entries automatically receive properties from a parent, reducing duplication and easing maintenance.

In Remote Desktop Manager, you can inherit credentials, VPN settings, and descriptive fields via child-level variables; this keeps configurations consistent across many entries. Inheritance also persists when using synchronizers to bring external data into a vault. To update many items faster, pair inheritance with templates and batch operations.

#### Related topics

* [Batch operations](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/batch-operations/)
* [Inheritance in Remote Desktop Manager](https://docs.devolutions.net/rdm/kb/knowledge-base/inheritance/)
* [Managing credentials](https://docs.devolutions.net/rdm/getting-started/managing-credentials/)
* [Entry credentials options](https://docs.devolutions.net/rdm/commands/edit/entry-credentials-options/)
* [Templates](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/templates/)

#### See also

* [Batch edit in Remote Desktop Manager](https://docs.devolutions.net/rdm/commands/edit/batch-edit/#entryfolder-selection)
* [Devolutions Academy – Comparing inheritance, batch edit, and batch operations using templates](https://academy.devolutions.net/student/activity/2815880-comparing-inheritance-batch-edit-and-batch-operations-using-templates)
* [Devolutions Academy - Understanding Inheritance](https://academy.devolutions.net/student/path/1916054/activity/2667045)
* [Devolutions Academy - Understanding inheritance on folders and entries](https://academy.devolutions.net/student/page/3266647-understanding-inheritance-on-folders-and-entries?curriculum_activity_id=5108633\&path_id=3266571\&sid=91223de6-2b21-4a1b-b92f-5159e2ae186a\&sid_i=0)


# IT asset

Manage your IT inventory accurately by centralizing technical, software, hardware, and location information. In Remote Desktop Manager, IT assets can be attached to a connection entry or managed with an asset manager, letting teams track lifecycle details such as owner, warranty, tags, and custom fields inside a vault. This centralization improves visibility, reduces duplication, and accelerates troubleshooting.

For scale, use templates and batch operations to import or update many assets at once, then keep records aligned through synchronizers or periodic updates. Reports and audits help validate accuracy and demonstrate compliance across environments.

#### Related topics

* [IT asset entry](https://docs.devolutions.net/rdm/kb/how-to-articles/it-asset-entry/)
* [Use the IT Asset Management feature in Remote Desktop Manager](https://docs.devolutions.net/rdm/kb/how-to-articles/it-asset-management/)
* [Hide the Asset panel located in the dashboard](https://docs.devolutions.net/rdm/kb/how-to-articles/group-policies/#hide-the-asset-panel-located-in-the-dashboard)

#### See also

* [Devolutions Academy - Asset management](https://academy.devolutions.net/student/path/1925039/activity/2667189)


# Offline

Offline mode lets you keep working locally and, if configured, automatically sync changes once you’re online again. In Remote Desktop Manager, entries can remain accessible even without a connection to the database; edits are queued locally and merged with the workspace when connectivity returns, keeping teams productive during travel, maintenance windows, or outages.

#### Related topics

* [Cache/Offline](https://docs.devolutions.net/rdm/commands/administration/system-settings/application-specific/offline/)
* [Offline Read/Write](https://docs.devolutions.net/rdm/workspaces/offline-mode/offline-read-write/)

#### See also

* [Devolutions Academy - Ensuring continuous access with offline mode](https://academy.devolutions.net/student/path/1925039/activity/2667185)
* [YouTube - Enable offline mode to access data even when disconnected from workspace](https://www.youtube.com/watch?v=W7jK8g4WbNQ)
* [Devolutions blog - Offline mode](https://blog.devolutions.net/2020/01/offline-mode/)
* [Devolutions Academy - Breaking down common scenarios: remote access for field work](https://academy.devolutions.net/student/activity/3380820-breaking-down-common-scenarios-remote-access-for-field-work)


# Override settings

Override the configuration of specific settings without permanently changing existing entries. Rather than duplicating an entry to change a single value, overrides let you reuse the same entry with your customizations, keeping the workspace tidy while preserving the original configuration.

In Remote Desktop Manager, overrides provide day-to-day flexibility for administrators: apply context-specific changes at launch or for a task, then continue using the shared entry as-is for everyone else. This helps standardize configurations while reducing clutter and maintenance effort.

#### Related topics

* [Inheritance](https://docs.devolutions.net/rdm/kb/knowledge-base/inheritance/)
* [User-specific settings](https://docs.devolutions.net/rdm/commands/edit/batch-edit/#edit-entries-user-specific-settings)
* [Local Specific Settings](https://docs.devolutions.net/rdm/commands/edit/batch-edit/#edit-entries-local-specific-settings)

#### See also

* [Devolutions Academy - Customizing Entries with Specific Settings](https://academy.devolutions.net/student/path/1925039/activity/2667191)


# Password policies

Password policies define the required format for passwords, including character use, patterns, and readability in generated values.

Policies can be optional or required, allowing administrators to guide best practices or enforce standards across teams. When applied to vaults, policies can be inherited by entries, customized for specific types of entries, or customized for all entries individually. When creating credentials, the password generator applies the policy in place for the entry, whether it is inherited or not. Typical rules include minimum length, character classes, allowed and banned patterns, and pronounceable output. Consistent policies reduce weak or repetitive passwords, improve compliance, and streamline onboarding.

#### Related topics

* [Password policies](https://docs.devolutions.net/rdm/commands/file/templates/password-templates/)
* [Password generator](https://docs.devolutions.net/rdm/commands/tools/password/)

#### See also

* [Password management](https://docs.devolutions.net/rdm/concepts/basic-concepts/password-management/)
* [Devolutions Academy - Simplifying setup with entry templates and password policies](https://academy.devolutions.net/student/activity/3380088-simplifying-setup-with-entry-templates-and-password-policies)


# Playlists

Playlists automate recurring tasks by launching selected connections together, saving time and reducing clicks.

In Remote Desktop Manager, you can create local, shared, or user vault playlists to open your standard connections in embedded mode with one action. This is ideal for routines like starting your daily toolset, preparing a maintenance window, or onboarding a client. For broader connection workflows, playlists complement centralized remote connection management.

Enhance automation by pairing playlists with scripts and events to run pre- or post-connection tasks such as checks, logging, or notifications.

#### Related topics

* [Playlist](https://docs.devolutions.net/rdm/commands/edit/play-list/)
* [Embedded sessions](https://docs.devolutions.net/rdm/user-interface/content-area/embedded-sessions/)

#### See also

* [Devolutions Academy - Automating Connections with Playlists](https://academy.devolutions.net/student/path/1925039/activity/2667188)
* [Devolutions Blog - The Basics: Remote Desktop Manager Playlist](https://blog.devolutions.net/2018/08/the-basics-remote-desktop-manager-play-list/)


# Remote management

Remote management is the ability to control and monitor systems from a distance, enabling secure access without being on site.

In Remote Desktop Manager, remote management centralizes launch, monitoring, and troubleshooting. Use dashboards for Active Directory, VMware, and Hyper-V, and open remote tools such as Remote Task Manager, Remote Printer, and Remote Registry directly from entries. This streamlines routine administration, speeds diagnostics, and reduces context switching.

#### Related topics

* [WOL](https://docs.devolutions.net/rdm/kb/knowledge-base/wake-on-lan/)
* [VMware](https://docs.devolutions.net/rdm/kb/troubleshooting-articles/vmware/)

#### See also

* [Devolutions Academy - Managing Systems Remotely](https://academy.devolutions.net/student/path/1925039/activity/2667184)


# SSH key

An SSH key is a public and private key pair used by the Secure Shell protocol to authenticate to remote systems without passwords.

In Remote Desktop Manager, manage SSH keys with an SSH key entry (generate, import, or link a local key) or use the SSH key generator for quick creation. For seamless authentication across sessions, the key agent manager can hold keys in memory and you can enable key agent forwarding when needed.

#### Related topics

* [Configure an SSH key entry](https://docs.devolutions.net/rdm/kb/knowledge-base/entry-settings/configure-ssh-key-entry/)
* [Create and use SSH key dashboard entry](https://docs.devolutions.net/rdm/kb/how-to-articles/ssh-dashboard-entry/)
* [SSH key agent](https://docs.devolutions.net/rdm/commands/tools/key-agent-manager/)
* [SSH key generator](https://docs.devolutions.net/rdm/commands/tools/ssh-key/)
* [SSH Key Manager (local)](https://docs.devolutions.net/rdm/commands/tools/ssh-key-manager-local/)

#### See also

* [Configuring Git commit signing with Remote Desktop Manager](https://docs.devolutions.net/rdm/kb/how-to-articles/git-commit-rdm/)


# Tags

Tags help organize and find related entries in Remote Desktop Manager, improving search, filters, and dashboard overviews.

Add tags manually on entries or apply them automatically with templates to standardize naming and reduce manual work across a vault. Use tags to quickly filter large lists, group items on the dashboard, and surface what matters for daily operations. Establish a simple, shared tagging convention so teams can build consistent views for projects, environments, or ownership.

#### Related topics

* [Advanced Search](https://docs.devolutions.net/rdm/commands/view/search/advanced/#search-tab)
* [Embedded Sessions](https://docs.devolutions.net/rdm/user-interface/content-area/embedded-sessions/)
* [Dashboard](https://docs.devolutions.net/rdm/user-interface/content-area/dashboards/)
* [Tag management](https://docs.devolutions.net/rdm/commands/edit/tag-management/)

#### See also

* [Devolutions Academy – Breaking down common scenarios: automated asset and inventory tracking](https://academy.devolutions.net/student/activity/3380802)
* [Devolutions Academy – Breaking down common scenarios: mutli-client environment management](https://academy.devolutions.net/student/activity/3380650)
* [Devolutions Academy – Delete and clean up your tags in Remote Desktop Manager](https://academy.devolutions.net/student/page/2846890-delete-and-clean-up-your-tags-in-remote-desktop-manager?curriculum_activity_id=4340232\&path_id=2628397\&sid=7a7fa2f0-c5ed-4119-a050-e31e2b5a2538\&sid_i=2)
* [Devolutions Academy – Finding entries faster with search tools](https://academy.devolutions.net/student/activity/3407934)
* [Devolutions Academy - Organizing entries with tags](https://academy.devolutions.net/student/path/1925039/activity/2667186)
* [Devolutions Academy - Organizing resources with folders and categories](https://academy.devolutions.net/student/page/3266641-organizing-resources-with-folders-and-categories?sid=b1f8c0eb-82d6-4073-920d-c13023a27d05\&sid_i=0)
* [Devolutions Academy – Speeding through edits with batch operations](https://academy.devolutions.net/student/activity/3407938)


# Tasks

A task is a reminder to perform a specific assignment or set of actions; task lists provide a structured way to organize, track, and complete work.

In Remote Desktop Manager, create a task list to group recurring maintenance, audits, or onboarding steps. Add due dates, priority, and notes, and link tasks to connection entries inside a vault. This boosts visibility, standardizes processes, and helps teams complete work on time without scattering reminders across multiple tools.

#### Related topics

* [Task](https://docs.devolutions.net/rdm/commands/window/task/)
* [Task List](https://docs.devolutions.net/rdm/commands/view/task-list/)

#### See also:

* [Devolutions Academy - Breaking down common scenarios: daily task efficiency](https://academy.devolutions.net/student/activity/3380811-breaking-down-common-scenarios-daily-task-efficiency)


# Templates

Templates let you standardize and reuse entry settings across your environment, saving time and ensuring consistency.

In Remote Desktop Manager, create local or shared templates and launch them from Quick connect or entry context menus to build new entries quickly. Templates support credentials, folders, sessions, synchronizers, tags, and password templates, so teams apply proven configurations without repeating work. Use batch operations to apply or update templates on multiple entries at once, and combine with variables to prefill fields and reduce errors across a vault.

#### Related topics

* [Batch operations](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/batch-operations/)
* [Embedded Sessions](https://docs.devolutions.net/rdm/user-interface/content-area/embedded-sessions/)
* [Entry credentials options](https://docs.devolutions.net/rdm/commands/edit/entry-credentials-options/)
* [Inheritance](https://docs.devolutions.net/rdm/concepts/intermediate-concepts/inheritance/)
* [PSM Connection Template](https://docs.devolutions.net/rdm/kb/how-to-articles/cyberark-psm-integration-scenarios/#from-active-directory-synchronizer)
* [Quick connect](https://docs.devolutions.net/rdm/commands/view/quick-connect/)
* [Templates](https://docs.devolutions.net/rdm/commands/file/templates/)

#### See also

* [Devolutions Academy – Comparing inheritance, batch edit, and batch operations using templates](https://academy.devolutions.net/student/activity/2815880-comparing-inheritance-batch-edit-and-batch-operations-using-templates)
* [Devolutions Academy – Speeding through edits with batch operations](https://academy.devolutions.net/student/activity/3407938)
* [Easily create a vault template](https://www.youtube.com/watch?v=0GwzZJ-JS7Q)


# Variables

Variables are context-aware values that centralize frequently reused information, making configuration more consistent and easier to maintain.

In Remote Desktop Manager, variables can live in credentials, entries, workspaces, folders, macros, IT assets, contacts, and keyboard shortcuts. Use built-in options or create custom values to prefill fields, standardize naming, and reduce manual edits across a vault. Pair variables with templates and inheritance to propagate defaults safely at scale.

A practical example is setting a folder-level customer or site value and referencing it in child entries for descriptions, credentials, or connection details. Update the variable once and all dependent entries follow, improving accuracy and saving time.

#### Related topics

* [Access and manage variables](https://docs.devolutions.net/rdm/kb/knowledge-base/access-manage-rdm-variables/)
* [Entry credentials options](https://docs.devolutions.net/rdm/commands/edit/entry-credentials-options/)
* [Event auto typing macro](https://docs.devolutions.net/rdm/kb/how-to-articles/entry-types-events-settings/event-auto-typing-macro/)
* [Keyboard shortcuts customization](https://docs.devolutions.net/rdm/kb/how-to-articles/keyboard-shortcuts-customization/)
* [Manage custom variables](https://docs.devolutions.net/rdm/kb/knowledge-base/manage-custom-variables/)

#### See also

* [Devolutions Academy – Breaking down common scenarios: mutli-client environment management](https://academy.devolutions.net/student/activity/3380650)
* [Devolutions Academy – Organizing resources with folders and categories](https://academy.devolutions.net/student/activity/3266641)
* [Devolutions Academy – Use custom fields and variables in Remote Desktop Manager](https://academy.devolutions.net/student/activity/3432600-use-custom-fields-and-variables-in-remote-desktop-manager)


# Advanced concepts

Advanced concepts are meant for system administrators as they cover much more complex topics or features useful to manage an organisation.

* [Check-out approvals](https://docs.devolutions.net/rdm/concepts/advanced-concepts/checkout-approvals/)
* [Entry history](https://docs.devolutions.net/rdm/concepts/advanced-concepts/entry-history/)
* [Events](https://docs.devolutions.net/rdm/concepts/advanced-concepts/events/)
* [External PAM integrations](https://docs.devolutions.net/rdm/concepts/advanced-concepts/external-pam-integrations/)
* [Four-eyes principle](https://docs.devolutions.net/rdm/concepts/advanced-concepts/four-eyes-principle/)
* [Logs, reports, and audits](https://docs.devolutions.net/rdm/concepts/advanced-concepts/logs-reports-audits/)
* [Macros](https://docs.devolutions.net/rdm/concepts/advanced-concepts/macros/)
* [Permissions/RBAC/Roles](https://docs.devolutions.net/rdm/concepts/advanced-concepts/permissions-rbac-roles/)
* [Scripts](https://docs.devolutions.net/rdm/concepts/advanced-concepts/scripts/)
* [Security](https://docs.devolutions.net/rdm/concepts/advanced-concepts/security/)
* [Session recording](https://docs.devolutions.net/rdm/concepts/advanced-concepts/session-recording/)
* [Synchronizers](https://docs.devolutions.net/rdm/concepts/advanced-concepts/synchronizers/)


# Check-out approvals

Check-out approvals help avoid user conflicts by limiting access to authorized users and, if configured, adding an approval workflow. While checked out, others cannot open it until it is checked back in, reducing errors and credential exposure.

For additional control, require approval to grant time-bound access to users who normally lack permission. Combine check-outs with role-based access control and detailed auditing to ensure accountability and traceability across your environment.

#### Related topics

* [Checkout system](https://docs.devolutions.net/rdm/commands/edit/checkout-system/)
* [Request temporary access to an entry in Remote Desktop Manager](https://docs.devolutions.net/rdm/user-interface/content-area/temporary-access/request-temporary-access/)
* [Vault access in Remote Desktop Manager](https://docs.devolutions.net/rdm/user-interface/content-area/vault-access/)

#### See also

* [Easily Elevate Permissions with RDM's Temporary Access feature - RDM Pro Tip 020](https://youtu.be/En3pmonz1f8?si=7YbxYSgW5Y1PfZf6)
* [Devolutions Academy - Use the Checkout System in Remote Desktop Manager](https://academy.devolutions.net/student/page/3487229-use-the-checkout-system-in-remote-desktop-manager?curriculum_activity_id=5561271\&path_id=2628397\&sid=3b192113-2064-4d43-8ecd-5ea0c18168ee\&sid_i=0)




---

[Next Page](/llms-full.txt/1)

