Manage user access and status
Administrators manage user access and status. They control account access, maintain security, and ensure accurate reporting. Each status represents a stage in the user lifecycle and determines what actions administrators can take.
Status types
- Awaiting registration: The user has an invitation but hasn't completed registration. Administrators candisablethe account.
- Active: The account is fully functional. Administrators candisablethe account.
- Inactive: Temporarily suspended or locked out (for example, due to inactivity, account expiry, or a security lockout). Administrators canenableordisableit.
- Disabled: An administrator turned off the account for organizational reasons (for example, contractor offboarding or short‑term leave).
- Disabledusers remain in the tenant but can't sign in or access resources. Administrators canenabledthem later.
note
- SelectEnable Accountto turn onInactiveandDisabledusers.
- SelectDelete Userto remove a user permanently from the tenant. This action can't be reversed.
Actions
- Disable account: Administrators candisableusers who areActive,Inactive, orAwaiting registration.
- When turning off a user, the administrator decides to keep or revoke permissions. If kept, the system restores them when the administrator re‑enables the user.
- Users with aDisabledstatus can't sign in, receive notifications, or be assigned to groups.
- Enable account:Enableusers inInactiveorDisabledstatus to restore access. If the administrator kept the permissions, the system restores them; if not, the user is enabled without permissions.
Permissions needed
Only users with
Full access
or Edit user
permissions can edit user details and perform actions to turn users on and off.Reporting and audit
Reports capture each user's current status. Audit logs capture status changes and permissions history.