Skip to main content

Managing users

In the User management view of FA Admin Console, you can:

  • Store user information and add, view, delete, activate and deactivate users.

  • Set up the user’s authentication process. You can choose direct or two-factor authentication process for the users to log in.

  • Manage brute force protection that deactivates a user after a number of unsuccessful login attempts.

  • View the user’s activity and log a user out of FA.

  • Set up a user's access to FA with user roles and the limited visibility functionality.

user_management_view.png

View and search for users

You can:

  • Search for users by their user ID, first name, last name, and email (the fields at the top).

  • Refresh the table content by clicking refresh.png at the top right.

  • Export the user information as an XLSX file.

    • For the whole table, click Export → Download as XLSX.

    • For specific rows, select users and click Export → Download as XLSX.

  • Adjust the table (see Adjust the view).

Adjust the view

You can adjust the table layout and specify the search criteria and then save these modifications for later:

  1. Make your adjustments. You can:

    • Adjust columns.

      • Show or hide columns (columns.png).

      • Reorder by dragging and dropping.

      • Change the width by dragging the boundary.

      • Sort by clicking the column name.

    • Adjust table row density (density.png).

    • Filter the table based on column content (filters.png).

    • Search the table with the search fields at the top of the view.

  2. Click save.png and enter a name for the view.

  3. Click Save.

The adjustments are saved as a view, including the search fields at the top. You can now:

  • Set a saved view as the default. To do this, click the Saved views field or saved_views.png, and then click the star icon set-as-default.png next to the saved view.

  • Open a saved view, work with it and make changes to it, and then use restore.png to restore the view to its previously saved settings.

  • Clear the saved view and return to the initial system view (click Screenshot_2024-09-02_at_16_52_30.png in the Saved views field).

  • Rename or delete saved views (click saved_views.png to open the saved views sidepane).

Add a user

To add a user:

  1. Go to the User management view in the FA Admin Console app.

  2. Click Add user at the top-right corner and fill in the user information:

    • The User ID used as a username at login and Email (required fields).

    • Linked contact to set up limited visibility or FA Front access with external identity provider.

    • Other fields, if needed. For more details, see User management view in FA Admin Console.User management view

  3. Click Edit user roles in the User details pane and choose which apps your user can access and with what roles.

    To access an app, a user needs a role for it – a user without any roles can't access any application.

  4. Let the user know about their credentials and how to get a password.

    • Send them the user ID – FA doesn't send this information automatically.

    • Instruct the user to request a password reset link by clicking Forgot password on the login page.

Modify a user

To modify a user, click on the user in the list. You can:

  • ActivateDeactivate a user. Switch the user’s status. Deactivated user can’t log in to FA. We recommend using this option instead of deleting the user – this maintains the user's history while preventing them from accessing FA.

  • Edit user info. To learn more about the user details, see User management view in FA Admin Console.User management view

  • Edit user roles. To learn more about managing user roles, see User management view in FA Admin Console.User management view

Delete a user

To delete a user and all user information from the system, click the Delete user icon. A deleted user can’t log in. If you just want to disable a user and prevent them from logging in, consider deactivating the user instead of deleting it.

Unblock a user (brute force detection)

To check if the user lost access to FA due to the brute force detection:

  1. Go to the FA Admin console, User Management view.

  2. Click the user row to open the User details pane on the right. You will see the user’s status in Brute force detection - blocked or unblocked.

To unblock the user, click Unblock and activate.

User details and account information

You can view and edit a user's information by clicking on them to open the User details pane. The following information is available for a user:

User account information

User ID (required)

A unique user ID for logging in to FA and log the user's activities.

Email (required)

The user's email address to which a password reset link is sent if the user clicks Forgot password on the login page.

First name and last name

The user's first and last name.

Linked contact

The corresponding contact in FA Back. A linked contact is needed to:

Linked contact external ID

The user’s external ID received from the external identity provider when the user logs in to FA Front. External ID is used to find a matching contact for the user. If you see this field, this means that FA failed to link a contact to the user. For example, there is no contact with such an ID or there are several contacts with this ID stored in FA. In this case, you can add a contact manually in the Linked contact field.

Status

The user account status: active (the user can log in to FA) or inactive (the user can't log in to the system). For details, see Assign user roles.

Sessions

The sessions section shows a list of currently active sessions for the user. For example, the same user might have logged in with different browsers, having multiple sessions open at the same time.

Application

The apps where the user is logged in within the session. For example, the user might have FA Back and FA Front open in different tabs in the same browser, accessing both applications with a single login and a single session.

Last access

The date and time the user accessed an app within the session. If the user accesses only one app, this shows the time they logged in, or if your user accesses multiple apps, this shows the time the user last opened a new app.

IP address

Shows the IP address the user is logged in from.

To log the user out of all sessions, click Log out user from all sessions. The user can still use FA for a short time until their authentication expires. They then get a "communication problem" error and are taken to the login page.

Last logins

The last logins section shows the dates and times of the user's five most recent logins.