Skip to main content
NetApp Console local deployment

Manage member security in NetApp Console local deployment

Contributors netapp-tonias netapp-ml94669

Secure user access to your NetApp Console local deployment organization by managing member security settings. You can direct local users to change their own passwords, manage local users' multi-factor authentication (MFA), and recreate service account credentials.

Required access roles

Super admin, Organization admin, or Folder or fleet admin. Learn about access roles.

Reset user passwords (local users only)

Administrators cannot reset local user passwords directly.

Direct local users to reset their passwords from the Console local deployment login page by selecting Forgot password?.

Note This option is not available for directory users.

Manage a local user's multi-factor authentication (MFA)

If a local user loses access to their MFA device, you can either remove or disable their MFA configuration.

Note Multi-factor authentication is only available for local users. Directory users cannot enable MFA through Console local deployment.

Use these guidelines to choose the right action:

  • Select Disable when the user temporarily loses access to their MFA device. Disabling MFA allows one sign-in without MFA for eight hours and then automatically re-enables MFA.

  • Select Remove when the user must fully reset MFA. After you remove MFA, the user signs in without MFA until they configure MFA again.

If a user has a saved recovery code, they can sign in with it. If a user does not have a recovery code, disable MFA so the user can sign in and regain access.

Note To manage a local user's multi-factor authentication, you must have an email address in the same domain as the affected user.
Steps
  1. Select Administration > Identity and access.

  2. Select Members.

  3. From the Members page, navigate to a member in the table, select An icon with three dots and then select Manage multi-factor authentication.

  4. Choose whether to remove or to disable the user's MFA configuration.

After you finish

Review the audit log to confirm who changed MFA access, when they changed it, and whether the action succeeded. Learn how to audit NetApp Console local deployment activity.

Recreate the credentials for a service account

You can create new credentials for a service account if you lose or need to update them.

Creating new credentials deletes the old ones. You cannot use the old credentials.

Steps
  1. Select Administration > Identity and access.

  2. Select Members.

  3. In the Members table, navigate to a service account, select An icon with three dots and then select Recreate secrets.

  4. Select Recreate.

  5. Download or copy the client ID and client secret.

    The Console local deployment shows the client secret only once. Make sure you copy or download it and store it securely.