> For the complete documentation index, see [llms.txt](https://docs.devolutions.net/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.devolutions.net/rdm/ribbon-menu-bar/administration/user-management.md).

# Users management

{% tabs %}
{% tab title="Windows" %}
Through ***User management***, administrators can create and manage users and their privileges. They can, for example, set the default permissions in ***System settings*** – ***Default permissions***, under vault ***management***. Remote Desktop Manager offers advanced user rights management to restrict access to entries. Note that the availability of some features depends on the active workspace.

{% hint style="info" %}

* This feature requires either [Devolutions Server or Devolutions Cloud](https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/).
* A user can be created using default security (specify the password) or integrated security. Not all advanced workspaces support the use of integrated security.
* Only administrators of both Remote Desktop Manager and the underlying database can create users and assign permissions.
  {% endhint %}

### Manage users

To create, edit, delete, rename, or otherwise manage users, use the buttons in the toolbar located in ***Users*** – ***Users***.

![](https://cdnweb.devolutions.net/docs/RDMW4091_2024_2.png)

<table><thead><tr><th width="212.20001220703125">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Add user</strong></td><td>Opens the <em><strong>User management</strong></em> window to create a new user.</td></tr><tr><td><strong>Duplicate user</strong></td><td>Copies the selected user along with their or her informations.</td></tr><tr><td><strong>Edit user</strong></td><td>Opens the <em><strong>User management</strong></em> window to modify the selected user.</td></tr><tr><td><strong>Assign license</strong></td><td>Opens the <em><strong>License</strong></em> window with which to assign licenses to users.</td></tr><tr><td><strong>Delete user</strong></td><td>Deletes the selected user.</td></tr><tr><td><strong>Rename login</strong></td><td>Opens a window to rename the selected user.</td></tr><tr><td><strong>Change your password</strong></td><td>Opens a window asking for a new password (password generator included) for the selected user.</td></tr><tr><td><strong>Remove MFA</strong></td><td>Removes multifactor authentication from the selected user.</td></tr><tr><td><strong>Fix SQL login</strong></td><td>Checks if a login exists, if the user exists in the workspace, and if the user is mapped. If these conditions are not met, Remote Desktop Manager automatically resolves these issues.</td></tr><tr><td><strong>User activity report</strong></td><td>Opens the <em><strong>User activity report</strong></em> window, which lets administrators create a customized report spanning specific dates for the selected user.</td></tr><tr><td><strong>SQL permission report</strong></td><td>Open the SQL permission report window, which lets administrators inspect the selected user's SQL permissions.</td></tr><tr><td><strong>Refresh</strong></td><td>Refreshes the <em><strong>User and security management</strong></em> window to show recent changes.</td></tr></tbody></table>

### User management settings

#### General

![](https://cdnweb.devolutions.net/docs/RDMW4434_2026_1.png)

<table><thead><tr><th width="183.4000244140625">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Authentication type</strong></td><td><p>Select the user's authentication type between:</p><ul><li>Custom (Devolutions): create a user specific to Remote Desktop Manager without creating an SQL login.</li><li>Database (SQL Server): authenticate using the SQL login from your SQL Server.</li></ul></td></tr><tr><td><strong>Username</strong></td><td>Enter the username for the user. When using <a href="https://docs.devolutions.net/rdm/commands/administration/user-management/integrated-security/">Integrated security</a>, the user must be selected from the directory.</td></tr><tr><td><strong>Password</strong></td><td>Enter the user's password. This field is disabled when using <a href="https://docs.devolutions.net/rdm/commands/administration/user-management/integrated-security/">Integrated security</a>.</td></tr><tr><td><strong>User type</strong></td><td><p>Select the type of user to create, select between:</p><ul><li><strong>Administrator:</strong> Grant full administrative rights to the user.</li><li><strong>Read only user:</strong> Grant only the view access to the user.</li><li><strong>Restricted user:</strong> Select which rights to grant to the user.</li><li><strong>User:</strong> Grant all basic rights to the user (Add, Edit, Delete).</li></ul><p>For more information, see <a href="https://docs.devolutions.net/rdm/commands/administration/user-management/user-types/">User types</a>.</p></td></tr><tr><td><strong>User license type</strong></td><td><p>Select the license type of the user between:</p><ul><li><strong>Default</strong></li><li><strong>Connection management</strong></li><li><strong>Password management</strong></li></ul></td></tr><tr><td><strong>First name</strong></td><td>Enter the first name of the user.</td></tr><tr><td><strong>Last name</strong></td><td>Enter the lat name of the user.</td></tr><tr><td><strong>Email</strong></td><td>Insert the user's email address.</td></tr></tbody></table>

#### Information

The ***Information*** section allows to store information regarding the users, such as their name, address, and more. It is divided in three sub-sections: ***Details***, ***Address***, and ***Phone***.

#### User groups

Assign user groups to the user by checking the ***Is member*** box. Read [User groups management](https://docs.devolutions.net/rdm/commands/administration/user-groups-management/) for more information on this topic.

![](https://cdnweb.devolutions.net/docs/RDMW4093_2024_2.png)

#### Vaults

Select which repositories the user can access. For more information read [Vaults overview](https://docs.devolutions.net/rdm/commands/administration/vaults-overview/).

![](https://cdnweb.devolutions.net/docs/RDMW4095_2024_2.png)

#### Application access

The application access section allows administrators to restrict access to Remote Desktop Manager or the [Devolutions Password Manager browser extension](https://docs.devolutions.net/password-manager/browser-extension/).

<table><thead><tr><th width="258.60003662109375">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Remote Desktop Manager</strong></td><td>Select if the user can access the workspace from Remote Desktop Manager.</td></tr><tr><td><a href="https://docs.devolutions.net/password-manager/browser-extension/"><strong>Devolutions Password Manager browser extension</strong></a></td><td>Select if the user can access the workspace from the Devolutions Password Manager browser extension.</td></tr></tbody></table>

#### Settings

![](https://cdnweb.devolutions.net/docs/RDMW4097_2024_2.png)

In the ***Settings*** section, administrators can allow the user to enable the [offline mode](https://docs.devolutions.net/rdm/workspaces/offline-mode/) on the workspaces. This also hinges on the workspace's configuration. See the available modes below:

<table><thead><tr><th width="129.800048828125">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Disabled</strong></td><td>No offline cache allowed for the user.</td></tr><tr><td><strong>Cache only</strong></td><td>Allows to save a cache of the workspace in order to improve loading performance. This option disallows the use of the offline mode.</td></tr><tr><td><strong>Read-only</strong></td><td>A read-only cache. The user will not be able to edit data in the workspace. This mode is allowed only for <a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/">Devolutions Server and Devolutions Cloud</a>.</td></tr><tr><td><strong>Read/Write</strong></td><td>An advanced cache, with change synchronization. This mode is allowed only for <a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/">Devolutions Server and Devolutions Cloud</a>.</td></tr></tbody></table>

#### See also

* [Devolutions Academy - Managing System Permissions and Users](https://academy.devolutions.net/student/path/1925039/activity/2667178)
  {% endtab %}

{% tab title="macOS" %}

### Manage users

To create, edit, delete, rename, or otherwise manage users, use the buttons in the toolbar located in ***Users*** – ***Users***.

![](https://cdnweb.devolutions.net/docs/RDMW4091_2024_2.png)

<table><thead><tr><th width="210.59991455078125">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Add user</strong></td><td>Opens the <em><strong>User management</strong></em> window to create a new user.</td></tr><tr><td><strong>Duplicate user</strong></td><td>Copies the selected user along with their or her informations.</td></tr><tr><td><strong>Edit user</strong></td><td>Opens the <em><strong>User management</strong></em> window to modify the selected user.</td></tr><tr><td><strong>Assign license</strong></td><td>Opens the <em><strong>License</strong></em> window with which to assign licenses to users.</td></tr><tr><td><strong>Delete user</strong></td><td>Deletes the selected user.</td></tr><tr><td><strong>Rename login</strong></td><td>Opens a window to rename the selected user.</td></tr><tr><td><strong>Change your password</strong></td><td>Opens a window asking for a new password (password generator included) for the selected user.</td></tr><tr><td><strong>Remove MFA</strong></td><td>Removes multifactor authentication from the selected user.</td></tr><tr><td><strong>Fix SQL login</strong></td><td>Checks if a login exists, if the user exists in the workspace, and if the user is mapped. If these conditions are not met, Remote Desktop Manager automatically resolves these issues.</td></tr><tr><td><strong>User activity report</strong></td><td>Opens the <em><strong>User activity report</strong></em> window, which lets administrators create a customized report spanning specific dates for the selected user.</td></tr><tr><td><strong>SQL permission report</strong></td><td>Open the SQL permission report window, which lets administrators inspect the selected user's SQL permissions.</td></tr><tr><td><strong>Refresh</strong></td><td>Refreshes the <em><strong>User and security management</strong></em> window to show recent changes.</td></tr></tbody></table>

### User management settings

#### General

<table><thead><tr><th width="188.199951171875">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Authentication type</strong></td><td><p>Select the user's authentication type:</p><ul><li><strong>Custom (Devolutions)</strong>: If you wish to add an extra layer of security without using Integrated Security or without having to create new SQL login in your SQL Server the Custom Authentication type will be your best option. You will only need to create one SQL account within the SQL Server.</li><li><strong>Database (SQL Server)</strong>: Authenticate using the SQL login from your SQL Server.</li></ul></td></tr><tr><td><strong>Username</strong></td><td>Enter the username for the user. When using <a href="https://docs.devolutions.net/rdm/commands/administration/user-management/integrated-security/">integrated security</a>, the user must be selected in the directory.</td></tr><tr><td><strong>Integrated security</strong></td><td>Specifies to use the Windows Integrated Authentication to authenticate to the workspace. Applies only to SQL Server and Devolutions Server, depending on their configuration. When checked, an ellipsis button appears to allow you to browse for the user account in the directory. Consult <a href="https://docs.devolutions.net/rdm/commands/administration/user-management/integrated-security/">integrated security</a> for more information.</td></tr><tr><td><strong>Password</strong></td><td>Enter the user's password. This field is disabled when using <a href="https://docs.devolutions.net/rdm/commands/administration/user-management/integrated-security/">integrated security</a>.</td></tr><tr><td><strong>User type</strong></td><td><p>Select the type of user to create. Select between:</p><ul><li><strong>Administrator</strong>: Grant full administrative rights to the user.</li><li><strong>Read only user</strong>: Grant only the view access to the user.</li><li><strong>Restricted user</strong>: Select which rights to grant to the user.</li><li><strong>User</strong>: Grant all basic rights to the user (Add, Edit, Delete).</li></ul></td></tr><tr><td><strong>User license type</strong></td><td><p>Select the license type of user. Select between:</p><ul><li><strong>Default</strong>: Grant full administrative rights to the user.</li><li><strong>Connection Management</strong>: Grant only the view access to the user.</li><li><strong>Password Management</strong>: Select which rights to grant to the user.</li></ul></td></tr><tr><td><strong>First name</strong></td><td>Enter the first name of the user.</td></tr><tr><td><strong>Last name</strong></td><td>Enter the lat name of the user.</td></tr><tr><td><strong>Email</strong></td><td>Insert the user's email address.</td></tr></tbody></table>

#### Information

Enter all the information needed regarding your new user.

#### User groups

<table><thead><tr><th width="136.20001220703125">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>User groups</strong></td><td>When a user group needs to be added to a user, a description column will help you to select the proper user group.</td></tr></tbody></table>

#### Privileges

<table><thead><tr><th width="225">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Allow reveal password</strong></td><td>Allows the user to use the Reveal Password command.</td></tr><tr><td><strong>Allow drag-and-drop</strong></td><td>Allows the user to move the sessions using drag-and-drop from other applications.</td></tr><tr><td><strong>View details</strong></td><td>Allows the user to see the content of the Details tab for all sessions.</td></tr><tr><td><strong>View information</strong></td><td>Allows the user to see the content of the Information tab for all sessions.</td></tr><tr><td><strong>View shared logs</strong></td><td>Allows the user to see the content of the Logs that applies to a session.</td></tr><tr><td><strong>Import</strong></td><td>Allows the user to import sessions. The import menu (<em><strong>File – Import</strong></em>) and the import feature in the context menu will be grayed out if the option is not active.</td></tr><tr><td><strong>Export</strong></td><td>Allows the user to export sessions. The export menu (<em><strong>File – Export</strong></em>) and the export feature in the context menu will be grayed out if the option is not active.</td></tr></tbody></table>

#### Permissions

The Permissions section allows you to assign permissions. Controls are sometimes hidden depending on the workspace or the state of other controls.

#### Settings

Allow the user to enable the offline mode on the workspaces. This also depends on the workspace being configured to allow it. You can choose between:

<table><thead><tr><th width="135.4000244140625">OPTION</th><th>DESCRIPTION</th></tr></thead><tbody><tr><td><strong>Disabled</strong></td><td>No offline cache allowed for that user.</td></tr><tr><td><strong>Read-only</strong></td><td>A read-only cache is allowed only for <a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/">Devolutions Server and Devolutions Cloud</a>..</td></tr><tr><td><strong>Read/Write</strong></td><td>An advanced cache, with change synchronization. This mode is allowed only for <a href="https://docs.devolutions.net/rdm/workspaces/workspace-types/native-workspaces/">Devolutions Server and Devolutions Cloud</a>.</td></tr></tbody></table>

#### See also

* [Devolutions Academy - Managing System Permissions and Users](https://academy.devolutions.net/student/path/1925039/activity/2667178)
  {% endtab %}
  {% endtabs %}


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://docs.devolutions.net/rdm/ribbon-menu-bar/administration/user-management.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
