> For the complete documentation index, see [llms.txt](https://learn.doubletick.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://learn.doubletick.io/settings/enterprise-security/control-team-member-login-access-with-device-management.md).

# Control Team Member Login Access with Device Management

Learn how to control team member login access with device management.

**Plan Availability**: Enterprise Plan *(Pro plan users can buy the Enterprise Security add-on under Billing & Invoices → Purchase Add-on or by contacting their Account Manager).*

With **Device Management**, Organization Owners can control which devices team members use to access their DoubleTick organization. When Device Management is enabled, a team member must get **approval** from the Organization Owner before they can log in from a new device. The owner can also review login activity and remove access to previously approved devices.

<figure><img src="https://2303112206-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F53n17VnOICC1LtDqlENV%2Fuploads%2FEpjt7zagweNKOJKmbeQn%2Fimage.png?alt=media&amp;token=ec348156-26cd-4097-9c44-5134d7cfbf7f" alt=""><figcaption></figcaption></figure>

#### <mark style="color:$primary;">**What happens when Device Management is enabled?**</mark>

Once Device Management is enabled:

* Team members need **approval** before logging in from a new device.
* The **Organization Owner** can approve or reject login requests.
* The Organization Owner can see which team member logged in, which **device** they used, number of devices they have logged in from, when they logged in, and the **Device ID**.
* The owner can **remove** an approved device from the organization.

> **Note:** Approval is required for every new device, even if the team member has already been approved on another device.

For example, if a team member is already logged in on their laptop and then tries to log in from their phone, the phone will require separate approval.

#### <mark style="color:$primary;">**How to enable Device Management**</mark>

<figure><img src="https://2303112206-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F53n17VnOICC1LtDqlENV%2Fuploads%2Fo2gIjrBKwTVjJBKun5Fo%2FUntitled%20design%20-%202026-08-11T145219.680.gif?alt=media&amp;token=670a188c-2449-42a9-bbae-35ccdd90d524" alt=""><figcaption></figcaption></figure>

Only the **Organization Owner** can enable Device Management.

1. Log in to your DoubleTick account.
2. Go to **Settings**.
3. Open **Enterprise Security**.
4. Select **Device Management**.
5. Under **Device Access Control**, move the toggle to enable.

Once enabled, **any login from a new device requires approval from the Organization Owner**.

***

#### <mark style="color:$primary;">**How does team member login approval work?**</mark>

<figure><img src="https://2303112206-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F53n17VnOICC1LtDqlENV%2Fuploads%2FmajwVoyM2jdRjPRQqq6U%2FUntitled%20design%20-%202026-08-11T153409.509.gif?alt=media&amp;token=fc949a1b-a1bb-4bcb-88e8-6f4d95e82fda" alt=""><figcaption></figcaption></figure>

Once Device Management is enabled, a team member can continue logging in to DoubleTick as usual.

If they try to log in from a device that hasn't been approved before:

1. The team member enters their login details and attempts to log in.
2. DoubleTick detects that the device is not yet approved.
3. The team member sees a **Login request sent** message.
4. The login request is sent to the Organization Owner for approval.
5. The team member's login remains pending until the request is approved.
6. Once the Organization Owner approves the request, the team member can login from that device.

***

#### <mark style="color:$primary;">**How can the Organization Owner approve a login request?**</mark>

<figure><img src="https://2303112206-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F53n17VnOICC1LtDqlENV%2Fuploads%2FJxVrMdoJeL6WfLz4hEjD%2FUntitled%20design%20-%202026-08-11T152527.238.gif?alt=media&amp;token=33e0e1b3-0057-4581-bb74-302034b8c80c" alt=""><figcaption></figcaption></figure>

To review a pending login request:

1. Go to **Settings**.
2. Select **Enterprise Security**.
3. Open **Device Management**.
4. Go to **Device Access Control**.
5. Review the login request from the team member.
6. **Approve** the request to allow the team member to access the organization from that device.

Once approved, the team member can log in successfully.

***

#### <mark style="color:$primary;">**What if a team member logs in from another device?**</mark>

Each new device requires separate approval from the Organization Owner.

For example:

* Radhika is already approved and logged in on her **work laptop**.
* She now tries to log in from her **personal laptop**.
* Since the personal laptop is a new device, Radhika will need to request approval again.
* The Organization Owner must approve the login before she can access the organization from her personal laptop.

**Approval is required separately for every new device.**

***

#### <mark style="color:$primary;">**How to remove an approved device**</mark>

<figure><img src="https://2303112206-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F53n17VnOICC1LtDqlENV%2Fuploads%2FKf7WSrAjhE6ZRyzdmGZy%2FUntitled%20design%20-%202026-08-11T154120.027.gif?alt=media&amp;token=a2babf9d-1ef1-46a1-8ea5-6a14bf77f134" alt=""><figcaption></figcaption></figure>

If you no longer want a device to have access to your organization, you can remove it from Device Management.

1. Go to **Settings → Enterprise Security → Device Management**.
2. Under **Registered devices**, find the device you want to remove.
3. Click **Remove**.

You can also use **Remove all devices** if you want to remove all currently registered devices.

Once a device is removed, the team member will need approval again if they try to access the organization from that device.

***

#### <mark style="color:$primary;">**How to view login activity**</mark>

<figure><img src="https://2303112206-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F53n17VnOICC1LtDqlENV%2Fuploads%2FnDgAFUVNZmux35d8Mnez%2Fimage.png?alt=media&amp;token=f7faebe8-105c-4fa5-be39-3bd8c2a3d828" alt=""><figcaption></figcaption></figure>

Device Management also lets the Organization Owner review the login activity of team members.

To view it:

1. Go to **Settings**.
2. Select **Enterprise Security**.
3. Open **Device Management**.
4. Select the **Login Activity** tab.

Here, the Organization Owner can see:

* **Which team member** logged in
* **Which device & location of the device** they used to log in
* **How many devices** the team member has logged in from
* **When** the team member logged in
* The **Device ID** associated with the login

This gives the Organization Owner better visibility into how team members are accessing the organization and which devices are being used.

***

#### <mark style="color:$primary;">**Registered Devices vs. Login Activity**</mark>

The **Registered devices** tab shows devices that currently have access to the organization.

The **Login activity** tab helps you review login history and see which team members accessed the organization and from which devices.

***

### <mark style="color:$primary;">**Important things to remember**</mark>

* Device Management applies to **new device logins**.
* Every new device requires approval from the Organization Owner.
* Approval is required even if the same team member has already been approved on another device.
* Multiple devices used by the same team member can each be approved separately.
* Organization Owners can remove registered devices at any time.
* Organization Owners can review login activity to keep track of access to the organization.

Device Management gives Organization Owners greater control over team access by ensuring that every new device is approved before it can access the DoubleTick organization.


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://learn.doubletick.io/settings/enterprise-security/control-team-member-login-access-with-device-management.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
