> For the complete documentation index, see [llms.txt](https://docs.denvrdata.com/docs/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.denvrdata.com/docs/platform/user-management.md).

# User management

Manage users and permissions

The Tenant Administrator role has the following permissions for user management

* Invite others to the team
* Remove members from the team
* Reset passwords of members
* Configure MFA

## Creating users

In the dashboard, select Administration - Users then select the button `Create new user`

<figure><img src="https://1008771031-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fo84Tuz16JeqaVoFstgKj%2Fuploads%2FKKn9tRWJOlITXD17gar1%2Fimage.png?alt=media&amp;token=2f245ba5-b1e3-4dea-8cc6-01eacb400d7f" alt="" width="247"><figcaption></figcaption></figure>

Enter the name of the user and the email address.

On the Roles tab, you can enable two capabilities (default is `User`):

| Role        | Permissions                                                                                                                                                          |
| ----------- | -------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| TenantAdmin | <ul><li>Apps, VMs, bare metal</li><li>web support tickets</li><li>VPC management</li><li>user management</li><li>billing management</li><li>cost and usage</li></ul> |
| User        | <ul><li>Apps, VMs, bare metal</li><li>web support tickets</li></ul>                                                                                                  |

<figure><img src="https://1008771031-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fo84Tuz16JeqaVoFstgKj%2Fuploads%2FFVLuMSsXCL0yNRVTpbk5%2Fimage.png?alt=media&amp;token=d8c54ef0-5757-4865-8dce-b30cd1bcba20" alt="" width="563"><figcaption></figcaption></figure>

When you select Save, an email will be generated to invite the new user to Tenant.

## Deleting users

From the user list, use the Action pull-down button and choose `Delete`.

<figure><img src="https://1008771031-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fo84Tuz16JeqaVoFstgKj%2Fuploads%2FST3hOyqgwhYhNxk9qb4X%2Fimage.png?alt=media&amp;token=8757bf8a-69b9-49f6-8264-d860095fa885" alt=""><figcaption></figcaption></figure>

## Requiring multi-factor (MFA)

During user create, or edit create, please check `Two factor authentication enabled`.  This will require the user to setup their authenticator on next login.

<figure><img src="https://1008771031-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fo84Tuz16JeqaVoFstgKj%2Fuploads%2FF7whnXXzRKr4bozwvDNP%2Fimage.png?alt=media&amp;token=06a928f0-e103-4926-8d8f-971153869acd" alt="" width="297"><figcaption></figcaption></figure>

## Using single sign-on (SSO)

Denvr AI Services supports OIDC for single-signon at a tenant level.  Please contact the support team to enable this for your organization.
