---
title: User Profile Administration
slug: edgemanager/quickstart-guide/user-profile-administration
description: You can manage your profile using the Keycloak profile application.
docTags: 
createdAt: 2022-07-12T22:48:55.000Z
---

You can manage your profile using the Keycloak profile application.

Before you can manage your profile, you must log in to Litmus Edge Manager and access your user profile, which is located in the top-right corner of Litmus Edge Manager.&#x20;

See [Access to Litmus Edge Manager](docId\:w3uHZQ4tSrH7OLjhuLt0A) to access the Keycloak application the first time.

# Access User Profile

**To open your user profile**:

1. Log in to Litmus Edge Manage&#x72;**.**
2. Select a company.
   Th&#x65;*&#x20;Projects* pane appears.
3. From the top of the window, click the **User** icon, and then select **Profile**.

::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/TxHpCXyPNi8qDfT4f75oU_username-options.png" size="50" width="316" height="389" caption="User profile drop down menu" position="center" showCaption="true"}

The Keycloak profile application opens.

::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/Re0NcWEoKXoafD-R0cjFF_image.png" size="80" width="901" height="459" position="center" caption="Keycloak landing page" showCaption="true"}

## Manage Personal Info

You can manage your username and email by clicking **Personal info** from the Keycloak landing page.&#x20;

::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/vCrNT6e7HuEw0AcL19nEm_image.png" size="80" width="901" height="459" position="center" caption="Personal info link" showCaption="true"}

Update your username and email as needed and click **Save**.&#x20;

::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/mOYbEuxUrH1BqB1WHqffP_image.png" size="80" width="922" height="552" position="center" caption="Personal info settings" showCaption="true"}

## Manage Account Password

You can manage the account password needed to log in to Litmus Edge Manager through the Keycloak application.&#x20;

:::hint{type="info"}
**Notes**:

- After you change your user account password, you are logged out and you must log in again using your new password.
- If two-factor authentication is enabled, you must provide the six-digit code from the authentication application on your phone during log in.
:::

To manage your account password:&#x20;

1. From the Keycloak landing page, click **Signing in**.&#x20;
   ::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/bjo78PVyJL5fQQ71aKcas_signing-in-link.png" size="80" width="901" height="459" position="center" caption="Signing in link" showCaption="true"}
2. From the *Signing in* page, click **Update**.&#x20;
   The Litmus Edge Manager login screen displays.
   ::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/UhkyuutH772qePF4IonwQ_update-password-button.png" size="80" width="1489" height="658" position="center" caption="Update password button" showCaption="true"}
3. Log in to Litmus Edge Manager again with your current credentials.&#x20;
4. Enter the new password twice and click **Submit**.&#x20;

## Set up Keycloak Two-Factor Authentication

You have the option of setting up two-factor authentication through Keycloak. For additional security, you can configure two-factor authentication (TFA) with a free authenticator application like Google Authentication.

Two-factor authentication exceeds standard security practices by requiring more than a username and password for login access. The authenticator software generates a token that expires within 60 seconds. This token provides the additional layer of authentication required for login.

### Before You Begin

You must modify your user account and optionally change your user account password using the Keycloak profile application.&#x20;

**To configure two-factor authentication:**

1. From the Keycloak landing page, click **Signing in**.&#x20;
   ::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/tlVgPlLqABoAnoJsm7uOQ_signing-in-link.png" size="80" width="901" height="459" position="center" caption="Signing in link" showCaption="true"}
2. From the Signing in page, click **Set up authenticator application**.&#x20;
   ::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/XGzV2X-f6JHdPyuG_21yc_set-up-authenticator-application-link.png" size="80" width="1518" height="648" position="center" caption="Set up authentication link" showCaption="true"}
3. Follow the prompts to set up the authenticator application.&#x20;

Once you configure the authenticator, you will see a confirmation message.

:::hint{type="info"}
**Note**:

- Once you set up two-factor authentication, you must use the authenticator application to access your account after entering your username and password.
- After you enter the username and password, the login directs you to a screen to enter the 6-digit one-time code generated by the application on your smart phone.
:::

## View Device Activity

To view device activity for Litmus Edge Manager, click Device activity from the Keycloak landing page.&#x20;

::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/rzyS7FPaTn2gLw_GsVDfw_image.png" size="80" width="901" height="459" position="center" caption="Device activity link" showCaption="true"}

You have the option of signing out specific signed-in devices or logging out of all devices.&#x20;

::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/2UJ3tv8-o87EMxERSzgrV_image.png" size="80" width="1396" height="704" position="center" caption="Options to sign out devices" showCaption="true"}

## View Application Permissions

You can view application permissions by click **Applications**.&#x20;

::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/Rd71V4fqYs2c7WWCVWNlR_image.png" size="80" width="901" height="459" position="center" caption="Applications link" showCaption="true"}

Click the arrow for an application to view more information.&#x20;

::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/rQlLQY_Io0LorF9B19QUu_image.png" size="80" width="1396" height="704" position="center" caption="Application information" showCaption="true"}

# Assign Admin Privileges

You can assign admin privileges to a user in your Litmus Edge Manager through the Keycloak admin console.

:::hint{type="warning"}
**Important:** You must have the Administrator role (*em-admin*) to do the following:

- Add or manage a company from your LEM.&#x20;
- Assign Admin roles to other users in your LEM.
:::

**To assign admin privileges:**

1. To access the Keycloak admin console, use the URL `https://<lem hostname>/auth/admin`. Check the [Access Litmus Edge Manager](docId\:w3uHZQ4tSrH7OLjhuLt0A) for your first-time login details.
2. From the Keycloak Realm drop-down on the left, switch the realm to **standalone**.
   ::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/-6AbqaLxgW0gDoTvzd0BU_image.png" size="50" width="346" height="396" position="center" caption="Keycloak realm side menu" showCaption="true"}
3. Navigate to *Users&#x20;*&#x61;nd select the user to whom you want to grant the privileges.
4. Click the **Role mapping** tab and then click the **Assign role** button.
5. Select *em-admin* on the pop-up and click **Assign**.
   ![](https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/as3dxER0BjYT-ubRwEbyQ_image.png "Assign roles dialog box")

Once completed, log out and log back in on the LEM UI with the user who was just granted the admin privileges. You should now see (*Admin*) next to their name on the top right.

::Image[]{src="https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/JnpgOY5jdwGCsFK6MrLtE_image.png" size="50" width="452" height="75" position="center" caption="Admin role assigned to user" showCaption="true"}

