Manage the user lifecycle
Add, review, disable, restore, and offboard tenant users with identity verification, least privilege, and retention checks.
Audience, roles, and scope
User records and lifecycle controls in Admin; the authoritative identity provider and HR process can impose additional steps.
Who this is for
- Tenant identity and user administrators
Roles
- Tenant administrator
- User administrator
Before you begin
- Approved user-lifecycle request
- Verified identity, employment or membership state, manager, and required access
Article tags
- users
- offboarding
- disable
- identity
- lifecycle
Procedures
Follow the sequence and stop when identity, authorization, target, or result differs from the article.
Add or update a user
Create the minimum approved identity record and confirm downstream state.
- 1Validate the request
Verify the person, unique identifier, tenant, manager or sponsor, start date, and approved access.
- 2Create or update the record
Search for duplicates, enter verified fields, assign no more than the approved baseline, and review before saving.
- 3Verify effective access
Confirm status and required assignments; notify the requester without sending credentials or sensitive identity data.
One accurate user record exists with the approved status and minimum access.
Disable or offboard a user
Contain access while preserving required records and ownership.
- 1Confirm authority and timing
Validate the offboarding request, effective time, legal or retention constraints, and affected applications.
- 2Disable and remove access
Use the approved status control, revoke applicable entitlements and privileged access, and follow identity-provider procedures.
- 3Transfer and verify
Reassign owned resources where required, verify access loss, and retain the change evidence under policy.
The user can no longer access the tenant while required data and ownership are handled according to policy.
Security and data handling
- Use only the identity, tenant, role, and data scope approved for the task.
- Verify targets and expected effects before saving, sending, publishing, exporting, deleting, or approving.
- Keep secrets and regulated data out of screenshots, URLs, free-text diagnostics, and ordinary support messages.
- Never delete or disable a user solely on an unverified email or chat request.
- Treat restoration as a new authorization decision, not an automatic undo.
Known limitations
- Admin controls may not automatically update external identity providers, devices, sessions, or every connected application.
- Deletion, retention, ownership transfer, and legal hold are deployment- and policy-specific.
Troubleshooting
You cannot open Vianordis Admin
Likely cause: The session expired, the account is not entitled, or the required tenant or role claim is missing.
- Open the service through the approved Vianordis entry point and sign in again.
- Confirm the intended organization, tenant, and account are in use.
- If access remains denied, record the time and request an entitlement check; do not attempt direct-URL bypasses.
A documented control or navigation item is not visible
Likely cause: The current role, subscription, tenant configuration, release status, or feature flag does not expose it.
- Confirm the audience, role, prerequisites, and limitations in this article.
- Refresh after a new sign-in and verify the correct tenant context.
- Ask the responsible administrator whether the capability is enabled before reporting a defect.
A saved change or background result is not visible
Likely cause: Validation failed, processing is incomplete, the view is stale, or the feature is locally simulated rather than persisted.
- Review inline validation, status indicators, filters, and the selected tenant or workspace.
- Refresh once and search by a stable identifier before repeating the action.
- Do not repeat irreversible or externally visible actions until the first operation's state is known.
Source verification
User list, detail, creation, status, and editing controls were reviewed in the pinned source.
Reviewed paths at 8f3a86e
src/app/(base)/management/users/page.tsxsrc/app/(base)/management/user/details/[userId]/page.tsxsrc/app/(base)/management/user/add/UserAddView.tsxsrc/app/(base)/management/disabled-users/DisabledUsersView.tsxsrc/app/actions/users.ts
Contact support
Contact support when
- A repeatable Vianordis Admin error blocks an approved task
- Expected access, tenant scope, data, or status appears incorrect
- A security, privacy, financial, compliance, or data-loss concern is suspected
Include
- The page, action, expected result, and exact error text
- The time of occurrence with time zone and whether it is reproducible
- Your tenant, role, browser, and sanitized record or correlation identifier
- The troubleshooting steps already completed
Never include
- Passwords, access tokens, API keys, recovery codes, session cookies, or private keys
- Unredacted personal, financial, health, student, employee, or other regulated data
- Confidential documents or message bodies unless support provides an approved secure channel