Help Center/ Workspace/ User Guide (Administrators)/ Users/ Users/ Performing Basic User Operations
Updated on 2026-02-24 GMT+08:00

Performing Basic User Operations

Scenarios

Administrators can view and modify user information, import users in batches, reset passwords, unlock accounts, resend notifications, delete users, manage MFA devices, and revoke certificates on the console.

Procedure

  1. Log in to the console.
  2. In the navigation pane, choose Users > Users.

    The Users page is displayed.

  3. Perform various management operations on created users as needed, as described in Table 1.

    Table 1 User operations

    Operation

    Procedure

    Description

    Viewing user information

    1. Filter users by username, user type, user collaboration, domain name, description, bound collaborative desktop, and enterprise project.
      NOTE:

      You can search for username in batches by entering multiple filter criteria. Use commas (,) to separate multiple values, for example, User1,User2,User3.

    Administrators view users in the user list by filtering criteria. User names can be searched in batches.

    Importing a user

    1. Click Import User. The Import User dialog box is displayed.
    2. Select the required domain name from the drop-down list.
    3. Select the required OU from the drop-down list.
    4. (Optional) Enter the description.
    5. Select the required enterprise project from the drop-down list.
    6. In the user list, you can filter user information by Username and Importable.
    7. Click OK.

    Administrators batch import users in the OUs of an AD server to the user management page on the console.

    Subscribing to collaboration

    1. Select the users for whom you want to subscribe to collaboration and click Subscribe to Collaboration.
    2. Select the required enterprise project from the drop-down list.
    3. Confirm the subscription fee, and click OK. The Cloud Service Orders page is displayed.
    4. Check the cloud service order and the fee to be paid.
    5. Select a payment method.
      • Pay with balance
      • Online payment (multiple platforms supported)
    6. Pay for your order. The subscription is complete.

    After subscribing to collaboration, users can quickly initiate collaboration between desktops, improving communication and collaboration efficiency.

    Modifying user information

    1. In the user list, click Modify in the Operation column. The Modify User dialog box is displayed.
    2. Select By users or By administrators for User Activation.
    3. You can modify the email address, mobile number, description, account expiration, and account options.
      User Information
      • Email: used to receive emails about desktop provisioning and related notifications
      • Mobile number: used to receive SMS messages about desktop provisioning and related notifications
      Account Expiration
      • Never expires: The account is permanently valid.
      • After this date: If the expiration date is set, the user account expires after this date.
      Account Options
      • Change password upon the next login: Users need to change the password upon the next desktop login.
      • Cannot change password: Only the administrator can reset the user password for desktop login.
      • Password never expires: The password is permanently valid.
      • Account disabled: Users cannot use disabled accounts for desktop login.
    1. Click OK.
      NOTE:

      If an enterprise has an AD domain, only the email address and mobile number can be modified. User information such as the description, account options, and account expiration cannot be modified.

    If no exiting AD domain is used, administrators can modify user information on the console when the user information is incorrect or changed.

    Resetting a password

    1. In the user list, choose More > Reset Password in the Operation column. The Reset Password dialog box is displayed.
    2. Choose Email or Phone as the method for sending passwords.
      NOTE:
      • If you enter only the email address or mobile number when creating a user, the option you entered will be selected by default on the password resetting page, and the other option will be unavailable by default.
      • If you enter both the email address and mobile number when creating a user, Email is selected by default and Mobile Number is optional on the password resetting page.
    3. Confirm the password resetting and click OK.
      NOTE:
      • If the existing AD domain is used, you need to reset the password on the AD server.
      • Password resetting is risky. After being reset, the original password cannot be used. Confirm that the operation is necessary.
      • An email address can receive a maximum of five password resetting emails a day. The validity period of the password resetting link in the email is 24 hours. Reset the password in time.

    When the existing AD domain is not used, if a user loses or forgets the login password, the administrator can reset the password for the user on the console.

    Unlocking a user

    1. Locate the user to be unlocked and choose More > Unlock User in the Operation column. The Unlock User dialog box is displayed.
    2. Click OK.
      NOTE:
      • Only locked accounts can be unlocked.
      • If the enterprise's AD domain is used, you need to unlock the user on the AD server.

    If an enterprise AD domain is not used and an account is locked due to five consecutive incorrect password inputs, the administrator can unlock the account on the console.

    Resending a notification

    1. Locate the user to which the notification is to be resent and choose More > Resend Notification in the Operation column. The Resend Notification dialog box is displayed.
    2. Click OK.
      NOTE:

      Desktops that are not assigned to users do not support this operation.

    If a user already has a desktop and needs to receive a notification email again, the administrator can resend the notification email on the console.

    Deleting a user

    1. Locate the user to be deleted and choose More > Delete in the Operation column.

      To delete multiple users, select the users to be deleted and click Delete in the upper left corner of the page.

      The Delete User page is displayed.

    2. Confirm the operation, and enter DELETE or click Auto Enter.
    3. Click OK.
      NOTE:
      • In the AD scenario, deleting a user does not delete the user from the AD server.
      • Users who have desktops cannot be deleted.

    The administrator can delete a specified user on the management console.

    Exporting a user

    1. On the Users page, click Export.
    2. Wait while the dialog box is displayed, indicating the file is being exported. You can download the exported file from the Export Center later.
    3. Click Download to export the user information to your local device. Click Go to Export Center. The Export Center page is displayed, where you can view the exported file.

    Administrators can export users on the management console.

    Managing MFA devices

    1. In the Operation column of the user, choose More > Manage MFA Device. The Manage MFA Device dialog box is displayed.
    2. Check the bound username, binding time, and device status.
      NOTE:
      • Clicking Delete in the Operation column of the binding record will delete the bound user information. In this case, the end user needs to bind the virtual MFA device again on the client and log in to the desktop using a dynamic verification code. A new binding record will be generated under Manage MFA Device on the console.
      • After the binding record is deleted from the MFA device, the end user needs to bind the virtual MFA device again when logging in.

    Administrators enable the Huawei Cloud multi-factor authentication service. After an end user binds a virtual MFA device on the client and logs in to a desktop using a dynamic verification code, a binding record is generated under Manage MFA Device on the console. The record shows the bound username, binding time, and device status.

    Revoking a user certificate

    1. Locate the user whose certificate is to be revoked and choose More > Revoke User Certificate in the Operation column. The Revoke User Certificate dialog box is displayed.
    2. Confirm the operation and enter YES or click Auto Enter.
    3. Click OK.
      NOTE:
      • The revocation may disconnect the user from the cloud desktop. After the revocation, a new user certificate will be issued to the user when they access the cloud desktop again.
      • This operation can be performed only when the AD domain is interconnected.

    Administrators can revoke a user certificate if the certificate is no longer used, has expired, has been leaked, the private key of the certificate has been lost, or for other security reasons.