Overview

Cloud Desktop relies on the use of Active Directory user accounts for accessing the remote desktop environment. itopia CAS offers several methods of managing these user accounts; from the CAS admin console, administrators can:

  • Create new Active Directory user accounts, either individually or by importing a spreadsheet
  • Import existing Active Directory user accounts into CAS, either individually or by importing a spreadsheet
  • Assign users to security groups
  • Edit basic user attributes*
  • Reset user passwords*

NOTE: management tasks marked with * are not available for Trusted AD deployments.

This article will walk through the management tasks available in the CAS admin console (cas.itopia.com).

Create New Users

When you create new users from the CAS console, CAS will create the corresponding user accounts in your Active Directory domain. You can create users individually in the CAS console or use a spreadsheet to bulk-create multiple users.

Creating a single user

Sign into CAS as a user with permissions to the Users module. Use the left-hand menu to navigate to Cloud Desktops > Users. Click the Create button.

Populate the information for the user. The required fields are:

  • First name
  • Last name
  • Username

Assign the user to a Collection Pool.

Optionally, you can add the user to security groups that have been created or imported into CAS.

If you have provided an email address, CAS can automatically send a welcome email with instructions to reset their temporary password and access their Cloud Desktops. To enable this option, select Send user a welcome email.

NOTE: Regardless of whether you enable this option, deployment administrators will receive an email with the username and password for each user.

Click Create. CAS will provision the user within a few moments.

Creating multiple users

The CAS admin console allows you to import users from a spreadsheet (CSV or Microsoft Excel format) to create multiple users at once.

Sign into CAS as a user with permissions to the Users module. Use the left-hand menu to navigate to Cloud Desktops > Users. Click the Import From button and select Spreadsheet.

On the Add from Spreadsheet page, use the Download Template link to download a blank spreadsheet that contains the fields that can be populated.

Open the template spreadsheet in a compatible application such as Google Sheets or Microsoft Excel, populate the users you wish to create, and save the spreadsheet as a CSV (comma-separated value) file. Required fields are marked with an asterisk in the column name.

Return to the Add from Spreadsheet screen. Click Upload File and browse to the location where you saved your updated file.

Specify the Collection Pool to which to assign the users, and select the users that should be imported. To select all users, click the topmost checkbox.

For users for whom you have provided an email address, CAS can automatically send a welcome email with instructions to reset their temporary password and access their Cloud Desktops. To enable this option, select Send user a welcome email.

NOTE: Regardless of whether you enable this option, deployment administrators will receive an email with the username and password for each user.

Click Add. CAS will begin creating the user accounts. While the users are pending creation, their status icon will be orange; when they have been created, their status icon will be gray. When users are actively logged into the deployment, their status icon will be green.

When the creation is finished, you will receive an email at the email address specified for your administrator account. The email will contain the usernames and initial passwords for all users created from the spreadsheet.

Creating from the Discovery catalog

Another method of importing users is the Discovery tool, which collects details of each user that ran the PC Discovery agent and stores them in your organization's Catalog. You can then create user accounts from that Catalog data.

Import Existing Users

If you have existing user accounts in your Active Directory, you can import them into CAS to allow them to be assigned to Cloud Desktops. As with creating new accounts, you can import users individually or by using a spreadsheet to bulk-import.

Importing individual users

Sign into CAS as a user with permissions to the Users module. Use the left-hand menu to navigate to Cloud Desktops > Users. Click the Add From button and select Active Directory.

In the Select from Active Directory section, you can specify whether to provide several filtering options to limit the users that are returned in your search query:

  • Local Domain or Trusted Domain: If you have Trusted AD configured in your deployment, you will see the option to import from the local domain (where CAS is deployed) or your trusted domain
  • Organizational Unit: You may either paste the distinguished name (DN) of an organizational unit or click Browse to load a list of the OUs in your Active Directory
  • Group Membership: Provide the name of an Active Directory group to only display members of that group
  • Custom LDAP Filter: To provide a complex query, use LDAP syntax to define a custom filter. Information about LDAP query syntax is available from Microsoft.

Click Search to retrieve your AD users. If you do not provide any filters, CAS will query your entire Active Directory and return all users; this may take a long time depending on the size of your domain.

CAS will list any users that do not already exist in CAS, either previously imported or created directly in CAS. Use the search box to filter for specific users, or select listed users by selecting their corresponding checkbox.

NOTE: In larger AD domains (1000+ user objects), CAS may return a subset of users on the search. If your desired users are not returned, update your filters to reduce the number of matching users

From the dropdown menu, select the RD Collection to which to assign the imported users. Click Add to import the users into CAS.

The imported users will appear in the CAS console after a few moments.

Importing multiple users via spreadsheet

Sign into CAS as a user with permissions to the Users module. Use the left-hand menu to navigate to Cloud Desktops > Users. Click the Import From button and select Active Directory.

Use the Download Template link to download a blank spreadsheet that contains the fields that need to be populated.

Open the template spreadsheet in a compatible application such as Google Sheets or Microsoft Excel, populate the users you wish to import, and save the spreadsheet as a CSV (comma-separated value) file. Return to the Import from Active Directory screen. Click Upload File and browse to the location where you saved your updated file.

From the dropdown menu, select the RD Collection to which to assign the imported users. Click Add to import the users into CAS.

The imported users will appear in the CAS console after a few moments.

Importing multiple users via group membership

When you import an existing Active Directory group into CAS (using the Groups module), CAS also imports the members of that group. This is performed as a one-time import; that is, if users are added to the AD group after the group has been imported, those will not be imported into CAS.

Managing Users

Users that have been created in CAS (or imported from Active Directory) can be managed directly from the CAS admin console. You can perform basic administrative tasks such as changing names and contact information, enabling or disabling accounts, unlocking accounts, and resetting passwords. You can also add or remove users from security groups that were created in CAS (or imported in from Active Directory).

NOTE: In a Trusted AD deployment, CAS cannot perform any actions on users imported from the trusted domain. These users must be managed directly within the trusted domain, and changes may not be reflected in the CAS console.

Individual User Management

From the main screen of the Users module, click on the user you wish to manage; do not click the checkbox as that will select the user, but rather click anywhere else in the row.

On the User Details screen, you have several options:

  • Edit - Change the user's name, contact information, password and account expiration, application assignment, or group membership. Note that you cannot change the username once a user has been created.
  • Reset Password - Manually set a new password for the user
  • Log Off - If the user has an active Cloud Desktop session in the deployment, you can force them to log off.
  • Unlock - Unlock the user's Active Directory account if it is locked
  • Enable - Enable the user's Active Directory account if it is disabled
  • Disable - Disable the user's Active Directory account if it is enabled
  • Delete - Delete the user's Active Directory account

Bulk Management

From the main screen of the Users module, you can multi-select user accounts and perform the following tasks from the menu bar:

  • Enable - Enable the AD user accounts if they are disabled
  • Disable - Disable the AD user accounts if they are enabled
  • Delete - Delete the AD user accounts

Related articles:
Change End User Settings
User Import Features

We'd love to hear from you! Feel free to contact us with questions or feedback by emailing support@itopia.com!

Did this answer your question?