This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| manuals:vps:users [2024/01/02 17:59] – Tokens -> user session log aither | manuals:vps:users [2026/07/12 20:30] (current) – Annotate vpsAdmin navigation paths and update interface labels aither | ||
|---|---|---|---|
| Line 6: | Line 6: | ||
| can set different addresses for certain contact roles, such as an accountant | can set different addresses for certain contact roles, such as an accountant | ||
| or system administrator. These settings can be changed in user profile details | or system administrator. These settings can be changed in user profile details | ||
| - | (vpsAdmin -> Edit profile) | + | (< |
| - | {{navody:vps:user_mail_roles.png?300|}} | + | {{:en:screenshots: |
| For example, the account manager receives e-mails about: | For example, the account manager receives e-mails about: | ||
| Line 25: | Line 25: | ||
| ==== Advanced settings ==== | ==== Advanced settings ==== | ||
| Should contact roles not be enough or if don't wish to receive certain | Should contact roles not be enough or if don't wish to receive certain | ||
| - | e-mails, there is an advanced settings form (vpsAdmin -> Edit profile -> | + | e-mails, there is an advanced settings form (< |
| - | Advanced e-mail configuration). You can choose different e-mail addresses for | + | Advanced e-mail configuration</ |
| specific mail templates or disable receiving of some mails altogether. | specific mail templates or disable receiving of some mails altogether. | ||
| - | {{navody:vps:user_mail_templates.png?300|}} | + | {{:en:screenshots: |
| ===== Two-factor authentication (2FA) ===== | ===== Two-factor authentication (2FA) ===== | ||
| Two-factor authentication for vpsAdmin using | Two-factor authentication for vpsAdmin using | ||
| - | [[wp> | + | [[wp> |
| - | can be optionally enabled. You then need both the password and TOTP to log in. | + | can be optionally enabled. You then need both the password and one of the |
| + | additional authentication devices. It is possible to combine | ||
| + | using one of the configured authentication devices is sufficient | ||
| When enabled, the two-factor authentication is mandatory for access to | When enabled, the two-factor authentication is mandatory for access to | ||
| Line 42: | Line 44: | ||
| will cease to work. | will cease to work. | ||
| - | 2FA can be enabled in profile settings (vpsAdmin -> Edit profile). | + | 2FA can be enabled in profile settings (< |
| + | only when there' | ||
| - | {{:navody:vps:2fa_status.png?200|}} | + | {{:en:screenshots:vpsadmin: |
| + | |||
| + | ==== TOTP ==== | ||
| You can setup TOTP e.g. on your mobile phone using applications like | You can setup TOTP e.g. on your mobile phone using applications like | ||
| Line 54: | Line 59: | ||
| you can enter the secret key manually. | you can enter the secret key manually. | ||
| - | {{:navody:vps:totp_device_confirm.png?300|}} | + | {{:en:screenshots:vpsadmin: |
| Once activated, you will be given a recovery code. This code can be used when | Once activated, you will be given a recovery code. This code can be used when | ||
| Line 63: | Line 68: | ||
| You can configure multiple TOTP devices and any one of them can be used to log in. | You can configure multiple TOTP devices and any one of them can be used to log in. | ||
| Individual devices can be temporarily disabled or removed | Individual devices can be temporarily disabled or removed | ||
| - | (vpsAdmin -> Edit profile -> TOTP devices). | + | (< |
| + | |||
| + | {{: | ||
| + | |||
| + | ==== Passkeys ==== | ||
| + | You can use hardware security tokens (YubiKey, GoTrust IdemKey, etc.) or software keychains such as KeePassXC, KeePassium, iCloud Keychain, Google Password Manager, Microsoft Windows Hello, 1Password. | ||
| + | |||
| + | Authentication using passkeys is available only in web browser, it cannot be used | ||
| + | with [[manuals: | ||
| + | |||
| + | First register your passkeys in < | ||
| + | 2FA in < | ||
| + | |||
| + | ===== Session control ===== | ||
| + | In profile settings (< | ||
| + | |||
| + | {{: | ||
| - | {{: | + | * **Enable single sign-on** will let you enter vpsAdmin credentials once and log in to vpsAdmin, knowledge base and Discourse |
| + | * **Preferred session length** will configure time to logout on inactivity in vpsAdmin web interface, it defaults to 20 minutes | ||
| + | * **Logout all** will always log you out from all sessions of the same client, e.g. if you're logged into vpsAdmin from different browsers or devices, logout on one will logout all of them | ||
| ===== Session log ===== | ===== Session log ===== | ||
| vpsAdmin logs all user sessions and remembers what actions were performed | vpsAdmin logs all user sessions and remembers what actions were performed | ||
| - | (vpsAdmin -> Edit profile -> Session log). | + | (< |
| - | {{:navody:vps:user-session-log.png?300}} | + | {{:en:screenshots: |
| You can see when the session started, ended, what authentication method was | You can see when the session started, ended, what authentication method was | ||