Manage Users
The Manage Users page is used to create internal accounts, update user identities, assign roles, activate or deactivate accounts, and end sessions.
Access requirements
- View Users (
setting.user.view) shows the menu, user list, filters, and user details in read-only mode. - Manage Users (
setting.user.manage) includes view access and enables creating, editing, activating, deactivating, and revoking user sessions. - Assigning roles also requires access to view Roles. This prevents a user administrator from assigning roles they are not allowed to inspect.
Create a user
This action requires Manage Users.
If an active-user maximum is configured, the page displays current usage. At maximum capacity, New User is disabled and the server also rejects account creation. Deactivate an account to release a slot before creating another user.
- Open Settings > Manage Users.
- Select New User.
- Enter the name, email, username, and mobile number.
- Create an initial password with at least 8 characters.
- Choose whether the account should be active immediately.
- Select Create User.
- Share the initial credentials through a secure channel and ask the user to change the password.
Assign a role
- Search for the user by name, email, or username.
- Select View or open the user details.
- In the roles section, select a role that matches the user's responsibilities.
- Save the role changes.
Grant only the access the user needs. See Role & Permissions for instructions on managing roles.
Update user details
- Open the user details.
- Select Edit.
- Update the name, email, username, or mobile number.
- Select Save Changes.
Team memberships appear in the user details but are managed from Manage Teams.
Activate or deactivate an account
- Select Activate or Deactivate for the user.
- Review the effect of the change.
- Confirm the action.
An inactive user cannot sign in. Before deactivating an account, reassign any unfinished approval or disbursement responsibilities.
Activating an inactive user consumes one active-user slot. When the maximum has been reached, Activate is disabled until another account is deactivated. Existing active users are not signed out when the limit is reduced below current usage.
End all user sessions
- Open the user details.
- Select Revoke Sessions.
- Confirm the action.
Use this action when a device is lost, access is suspected, or the user must sign in again after an access change.
Next
Continue to Role & Permissions.