For the complete documentation index, see llms.txt. This page is also available as Markdown.

4. Grant User Access

Add users to platform, set access and permissions

Overview

Users access the VPN using the Desktop and Mobile Apps, on-demand VPN clients that can run on Windows, Mac, Linux, iPhone, and Android. Users can authenticate via Basic Auth or OAuth, and can be segmented into groups to separate access.

Setting up user access consists of three steps:

1

Add Users

Users can be Created, Invited, or can Sign-Up (Pending Users).

For all these options, it is important to know the basic Access Level you want to assign:

Admin: Has access to all resources on the platform

Platform User: Will have access to specified resources on the platform

Service User: Will only have the ability to use the VPN via App (cannot log into the platform).

For this guide we are assuming you are configuring Service Users.

Create Users (basic auth)

Click on “Create User” in User Management interface to create a new Basic Auth user. Set a username, password, and specify the access level.

2

Set User Permissions

Invite Users

Click on “Invite User” in User Management interface to invite new users by email. If OAuth is configured (or using SaaS) this should be a compatible email domain.

Groups

User Groups let you organize members and manage network access at scale. Assign a group to one or more networks with a specific role in each network, and every member inherits those permissions automatically.

3

Secure Remote Access

Once users are added to the platform and permissions configured, they can download and install the Netmaker Desktop and log in to access the network.

Install the Netmaker Desktop

To install the Netmaker Desktop, users should download the platform-specific installer at https://www.netmaker.io/download. They should then follow the platform-specific instructions to install the client.

Logging In

Server: Users will need to know the Tenant ID for SaaS Netmaker instances, or API URL for On-Prem:

  • Tenant ID: The SaaS Tenant ID

  • Netmaker API URL: api.<your netmaker base domain>

Users will then login via Basic Auth or OAuth depending on how they were added:

  • Basic Authentication: Enter Username and Password, click Log In

  • OAuth: Click the “Login with SSO button and then go through the provider’s login process.

Upon successful login, the user will see the gateways for which they have access.

Use the toggle switch to connect or disconnect from a specific gateway and access the network.

Last updated

Was this helpful?