Managing Users

v2.20.1

This guide covers all common user management tasks: creating new accounts, editing existing ones, enabling or disabling access, and deleting users.

Path: Settings → Users

Create a user

1

Open the Users section

Go to Settings → Users.

2

Open the creation dialog

Click the Add User button in the toolbar. The Create User dialog opens.

3

Personal details

FieldRequiredDescription
First nameYesThe user’s first name
Last nameYesThe user’s last name
DescriptionNoOptional notes about the user

You can also upload a profile photo using the Upload photo button.

4

Account credentials

FieldRequiredDescription
EmailYesMust be unique. Used for email notifications and login
PhoneNoInternational format (e.g. +385123456789). Used for SMS and voice notifications
UsernameYesMust be unique. Cannot be changed for Active Directory accounts
PasswordYesMust meet any configured password complexity requirements
Verify passwordYesRepeat the password to confirm

Click Generate random password to have Supracontrol create a secure password automatically.

5

Roles and access

FieldRequiredDescription
RolesYesSelect one or more roles. The highest-level role determines the user’s effective permissions. See Users and Roles for a full description
Access UserNoTick to grant this user access to the Access Control module
Master key holderNoGrants this user master key access rights
Add user to business unitNoTick to assign the user to a Business Unit, then select the BU from the dropdown
6

Save

Click Save to create the account. The new user can log in immediately after creation (provided the account is enabled and within its validity period).

Edit a user

1

Select the user

Click the user’s row in the table to select it.

2

Open the edit dialog

Click the Edit button in the toolbar, or double-click the row. The edit dialog opens with the same tabs as the create dialog.

3

Make changes and save

Modify any fields across the tabs and click Save to apply the changes.

Note: You cannot edit a user whose role level is higher than your own. For Active Directory-linked accounts, the username, first name, last name, and email may be locked.

Enable a user

A disabled user cannot log in. To re-enable an account:

1

Select the user(s)

Select one or more disabled user rows in the table.

2

Enable

Click the Enable button in the toolbar. The selected accounts are immediately enabled with no confirmation dialog.

Disable a user

Disabling prevents a user from logging in without deleting their account or data.

1

Select the user(s)

Click one or more user rows in the table.

2

Disable

Click the Disable button in the toolbar. The selected accounts are immediately disabled.

Note: Administrators cannot disable their own account. You cannot disable a user whose role level is higher than your own. The system will not allow all Administrator accounts to be disabled - at least one must remain active.

Delete a user

1

Select the user

Click the user row you want to delete.

2

Delete and confirm

Click the Delete button in the toolbar. A confirmation dialog appears - click Confirm to permanently delete the user.

Deletion is permanent

The user’s account, login history, and personal settings are removed. Notifications and schedules created by the user are not automatically removed.

  • Owner accounts cannot be deleted - the Owner role is protected to prevent accidental removal
  • You cannot delete yourself
  • You cannot delete the last Administrator - at least one must always remain
  • Active Directory-linked accounts cannot be deleted from Supracontrol - remove them from Active Directory first, then sync

Assigning locations to a user

Locations determine which parts of the system a user can access. A user without any location assignments typically cannot see any devices, cameras, or sensors.

1

Open the user’s edit dialog and navigate to the Locations tab

Select the user and click Edit in the toolbar.

2

Select locations and optionally attach a schedule

Select one or more locations from the tree. Optionally, attach a schedule to each location to restrict access to specific time windows.

3

Save

Click Save to apply the location assignment.

Validity periods

To create a temporary user (e.g. a contractor or guest), set a Valid From and Valid Through date on the Advanced tab. The user can only log in between those dates. Once the validity period expires, the account behaves as if disabled - the user cannot log in, but the account and its data remain intact.