All Products
Search
Document Center

Elastic Desktop Service:Manage convenience accounts

Last Updated:Apr 01, 2026

Convenience accounts are WUYING Workspace user accounts managed directly in the Elastic Desktop Service (EDS) console, without requiring an enterprise identity provider. This topic covers the full lifecycle of managing convenience accounts: assigning cloud computers, managing passwords, organizing accounts, controlling access, and handling resignations.

Account types and what they affect

Convenience accounts come in two activation types. Several management operations behave differently depending on which type you use.

User-activatedAdministrator-activated
Who activates the accountThe end user activates it via an email invitationAn administrator activates it directly in the console
Password resetSupported — generates and sends a new password to the user's emailNot supported; use Change Password instead
Password changeNot availableAvailable — new password is sent to the user administrator's mailbox (if configured)
Automatic lock dateCannot be set at creation; lock manually after creationCan be set at creation, or lock manually at any time
Batch operationsSupported only with other user-activated accountsSupported only with other administrator-activated accounts

Prerequisites

Before you begin, ensure that you have:

Assign cloud computers to a convenience account

After assigning a cloud computer or shared cloud computer to a convenience account, the end user can log on to a WUYING Terminal and access it.

Behaviors to be aware of:

  • One convenience account can be assigned multiple cloud computers. The user can access all of them simultaneously without conflicts.

  • If one cloud computer is assigned to multiple convenience accounts, only one user can connect at a time. Others are blocked until the current user disconnects.

Prerequisites

Before you begin, ensure that you have:

Assign a cloud computer

  1. Log on to the Elastic Desktop Service Enterprise console.

  2. In the left-side navigation pane, choose Users > Users.

  3. On the Users tab, find the convenience account and click View/Assign Cloud Computers in the Actions column.

  4. On the View/Assign Cloud Computers panel, click Assign Cloud Computer on the Cloud Computers Assigned tab or the Shares Assigned tab.

  5. Select the cloud computer or shared cloud computer and click Confirm.

After assigning or unassigning a cloud computer, there may be a short delay before the updated assignment is visible. Refresh the page to see the latest state.

To unassign a cloud computer, open the View/Assign Cloud Computers panel, find the cloud computer on the Cloud Computers Assigned or Shares Assigned tab, and click Remove in the Operation column.

You can also assign a convenience account from the Cloud Computers page or the multiple shared cloud computers page. See Add a user to a cloud computer and Manage authorized users.

Manage passwords

Reset a password

Use this for user-activated convenience accounts. Resetting generates a new random password and sends it to the user's email.

Users can also request a password reset from a WUYING Terminal. See Use a software client.
  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, find the account:

    • Single account: Click the ⋮ icon in the Actions column and choose Reset Password.

    • Multiple accounts: Select the accounts and click Reset Password at the bottom of the list.

Change a password

Use this for enterprise-type (administrator-activated) convenience accounts. The new password is sent to the user administrator's mailbox if one is configured. If no user administrator is configured, provide the new password to the end user manually.

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, find the account and click Change Password in the Operations column.

  3. In the Change Password dialog box, enter the new password and click Confirm.

For security reasons, existing passwords are never displayed in the console. To give a user access, reset or change the password to generate a new one.

Add a convenience account to an organization

Adding an account to an organization lets you view the organization chart and manage accounts by organizational node. You can add an account to an organization during creation or at any time afterward. Use this procedure to add an existing account to an organization or to move it to a different one.

Prerequisites

Before you begin, ensure that you have:

Move an account

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, select the accounts:

    • Single account: Find the account and click Move in the Actions column.

    • Multiple accounts: Select the accounts, then choose More > Move User at the bottom of the list.

  3. In the Move User dialog box, select the destination organization and click Confirm.

Set local administrator permissions

Granting local administrator permissions lets an end user install software and change certain system settings on their cloud computer. Grant or revoke this permission at any time.

Important

If a Group Policy Object (GPO) on the enterprise Active Directory (AD) domain controller restricts local administrator permissions, the GPO takes precedence and the console setting has no effect.

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, select the accounts:

    • Single account: Find the account and click the icon in the Local Administrator column.

    • Multiple accounts: Select the accounts, then choose More > Configure Local Administrator at the bottom of the list.

  3. In the Configure Local Administrator dialog box, select Yes or No and click Confirm.

Lock or unlock a convenience account

Locking temporarily prevents an end user from logging on to a WUYING Terminal.

Automatic locking: After 10 consecutive incorrect password attempts on a WUYING Terminal, the account is automatically locked for 20 minutes, then automatically unlocked.

Batch operations are only supported for accounts of the same activation type.

Lock an account

For administrator-activated accounts, you can set an automatic lock date at creation. For user-activated accounts, locking must be done manually.

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, select the accounts:

    • Single account: Find the account and click Lock in the Actions column.

    • Multiple accounts: Select the accounts and click Lock at the bottom of the list.

  3. In the confirmation dialog box, click Confirm.

Important

Locked accounts cannot be used to log on to a WUYING Terminal.

Unlock an account

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab of the Users & Organization page, select the accounts:

    • Single account: Find the account and click Unlock in the Operations column.

    • Multiple accounts: Select the accounts and click Unlock at the bottom of the list.

  3. In the confirmation dialog box, click OK.

Add restricted logon terminals

After adding restricted logon terminals for an account, the end user can only log on from those specific terminals.

Prerequisites

Before you begin, ensure that you have:

  • Trusted device authentication enabled. See Enable trusted device authentication.

  • At least one terminal registered in the console. Terminals are registered automatically when an end user logs on to a software client using your organization ID.

Restrict logon terminals

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, find the user. Click the ⋮ icon in the Actions column and choose View/Restrict Logon Terminals.

  3. On the View/Specify Logon Terminals panel, click Add Terminal.

  4. In the Add Terminal dialog box, select the software clients (desktop and mobile) to restrict and click OK.

To remove a restricted logon terminal, click Remove in the Action column for the target client, then click OK in the confirmation dialog box.

Manage user attributes

User attributes let you tag convenience accounts with custom key-value pairs, then filter the user list by those tags to perform batch operations.

Limits:

LimitValue
Maximum property values per property key50
Maximum property keys per convenience account20
Property values per property key per account1

Create a user attribute

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, click the icon to the right of the Property column header.

  3. On the Manage User Property panel, click Add Property.

  4. In the Add Property dialog box, enter a property key and its values, then click OK.

To edit or delete an attribute, open the Manage User Property panel and update or remove the property.

Important

Deleting a property that is bound to accounts also removes the property values from those accounts.

Bind a user attribute to an account

  1. On the Users tab, select the accounts:

    • Single account: Find the account and click Edit in the Property column.

    • Multiple accounts: Select the accounts, then choose More > Bind Property at the bottom of the list.

  2. In the Modify Property dialog box, select the property key and value to bind, then click Confirm.

To unbind a user attribute, open the Modify Property dialog box, remove the corresponding property key and value, and save.

Filter accounts by user attribute

  1. On the Users tab, click the property filter drop-down list at the top of the list.

  2. Select a Property and Property Value, then click OK.

You can apply multiple filter properties. For each property, you can select multiple values.

The list shows only accounts that match the selected filters. To restore the full list, clear the filters.

Export the user list

Export all convenience account information to a workbook file.

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, click the export icon in the upper-right corner of the user list.

Delete a convenience account

Delete an account to release its account quota when it is no longer needed.

Important

Before deleting, ensure that no cloud computers or multiple shared cloud computers are assigned to the account.

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, select the accounts:

    • Single account: Find the account. Click the ⋮ icon in the Actions column and choose Delete.

    • Multiple accounts: Select the accounts, then choose More > Delete at the bottom of the list.

  3. In the confirmation dialog box, click Confirm.

Batch operations are only supported for accounts of the same activation type.

Manage accounts of resigned users

When a user resigns, filter by the Resigned status on the Users tab to locate their account. From there, transfer their assets to another user or delete the account.

Transfer assets from a resigned user

Use asset transfer to move a resigned user's cloud computers, shared cloud computers, or Enterprise Drive to another active user. Only one asset type can be transferred at a time.

The receiving user must meet both of the following conditions:

  • Be under the same corporate identity source as the resigned user

  • Not currently own any assets

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, click the filter icon to the right of the Status column header and select Resigned.

  3. Find the account and click Asset Transfer in the Operations column.

  4. On the Asset Transfer panel, configure the following settings and click Transfer. In the confirmation dialog box, review the details and click OK.

SettingDescription
Basic informationDisplays the username, status, display name, and remarks. Review carefully to avoid accidental transfers.
User assetSelect the asset type to transfer: Cloud computer, Shared cloud computer, or Enterprise Drive. Only one type can be transferred per operation.
Select a user for assignmentSelect the user who will receive the assets. The user must meet the conditions above.

Delete the account of a resigned user

  1. In the left-side navigation pane, choose Users > Users.

  2. On the Users tab, click the filter icon to the right of the Status column header and select Resigned.

  3. Select one or more accounts, then choose More > Delete.

  4. In the Delete User dialog box, confirm the information and click OK.

FAQ

I can't see a user's current password in the console. Where do I find it?

Passwords are not stored or displayed for security reasons. To give a user a new password, reset it on the Users page — a randomly generated password is sent to the user's email address.

Do I need to enable the bidirectional copy policy when I enable file transfer approval?

No. File transfer approval and copy/paste policies are independent settings. For example, if you configure a download-only policy and enable file transfer approval:

  • Users must get approval before downloading a file.

  • Users are blocked from uploading files.