Device Access Control- Temporary Access
Temporary Access grants a single endpoint a time-boxed exception to its device rules- for example "let this laptop use a USB drive for the next 2 hours". Access ends automatically when the duration or window expires, or when you revoke it.
How to get here
- Open Device Control → Device Access Control.
- Click the Temporary Access tab.
Navigate to: Device Control → Device Access Control → Temporary Access
URL path: /device-control/device-access-control/temporary-access
The Temporary Access screen

| Column | What it shows |
|---|---|
| Endpoint | The machine the grant applies to. |
| Name | A label for the grant. |
| Duration Type | Fixed (a length of time) or Window (a start/end). |
| Duration | The length, or the start–end window. |
| Devices | How many device rules the grant covers. |
| Status | Active, Pending, In Progress, Failed, Inactive. |
Created At and Description are available via the column picker.
How do I grant temporary access?
Click Create. The form opens in a drawer.

| Field | Required | Notes |
|---|---|---|
| Name | Yes | A label for the grant. |
| Description | No | A note. |
| Endpoint | Yes | The machine to grant access to. |
| Duration Type | Yes | Fixed Duration or Time Window. |
| Duration Value / Unit | Yes* | e.g. 2 Hours / Days / Weeks. *For Fixed. |
| Window Start / End Time | Yes* | The exact window; end must be after start. *For Window. |
| Allowed Devices | Yes | One or more device blocks- Add Allowed Device. |
Each allowed-device block sets the Device Type, whether it applies to All Instances or a Specific Instance, and (for a specific instance) the vendor/product IDs and serial, or the device instance path.
How do I end access early?
Click Revoke Access (the red icon) on an Active row and confirm. Grants that are no longer active can be deleted.
Related
- Policies- the standing rules a temporary grant overrides.