Skip to main content

Device Access Control- Temporary Access

Temporary Access grants a single endpoint a time-boxed exception to its device rules- for example "let this laptop use a USB drive for the next 2 hours". Access ends automatically when the duration or window expires, or when you revoke it.

How to get here

  1. Open Device Control → Device Access Control.
  2. Click the Temporary Access tab.

Navigate to: Device Control → Device Access Control → Temporary Access

URL path: /device-control/device-access-control/temporary-access

The Temporary Access screen

The Temporary Access listThe Temporary Access list
ColumnWhat it shows
EndpointThe machine the grant applies to.
NameA label for the grant.
Duration TypeFixed (a length of time) or Window (a start/end).
DurationThe length, or the start–end window.
DevicesHow many device rules the grant covers.
StatusActive, Pending, In Progress, Failed, Inactive.

Created At and Description are available via the column picker.

How do I grant temporary access?

Click Create. The form opens in a drawer.

The Create temporary access formThe Create temporary access form
FieldRequiredNotes
NameYesA label for the grant.
DescriptionNoA note.
EndpointYesThe machine to grant access to.
Duration TypeYesFixed Duration or Time Window.
Duration Value / UnitYes*e.g. 2 Hours / Days / Weeks. *For Fixed.
Window Start / End TimeYes*The exact window; end must be after start. *For Window.
Allowed DevicesYesOne or more device blocks- Add Allowed Device.

Each allowed-device block sets the Device Type, whether it applies to All Instances or a Specific Instance, and (for a specific instance) the vendor/product IDs and serial, or the device instance path.

How do I end access early?

Click Revoke Access (the red icon) on an Active row and confirm. Grants that are no longer active can be deleted.

  • Policies- the standing rules a temporary grant overrides.