Sharing Sessions

Fudo Enterprise allows you to give another person access to a selected session through a generated link. The link works both on the management address and on the User Access Gateway address, so you can share a session with someone who has no access to the management panel.

A link is created with the following settings:

  • Access type - whether the link expires together with the session, or is valid during a selected time window.

  • Access permissions - whether the recipient must sign in to Fudo Enterprise before viewing the session, or can open it anonymously.

  • Session mode - whether the recipient can only watch the session, or can also interact with it.

Note

Access type and Session mode are offered only for sessions that are still running. For a session that has already ended there is nothing to join and no live period to follow, so the window asks only for the time window and the access permissions.

Note

Users can also share their own live sessions directly from the User Access Gateway, without involving an administrator. This requires the Allow users to share live sessions option on the safe. Refer to the Creating a Safe section and to the User Access Gateway documentation.

Sharing a Session

To share a session, proceed as follows.


  1. Select Sessions.

  2. Find the desired session, expand the more options menu (.), and click . to open the Share session window.

../../_images/6-1-sessions-share-icon.png

Note

The same window is available in the session player, under the Share session button. Use whichever is closer at hand - the window and its options are identical.

  1. Click Generate link.

../../_images/6-1-share-session-modal.png
  1. Select the Access type:

    • Live session - the link stays valid while the session is live. Offered only for sessions that are still running.

    • Time window - the link is valid within a chosen time window. Provide the Available from and Available to values. For sessions that have already ended, the two fields are shown straight away and this is the only possible access type.

../../_images/6-1-share-generate-live.png

Important

A link with a time window may remain valid after the session ends, which means it also gives access to the session recording.

../../_images/6-1-share-generate-timewindow.png
  1. Select the Access permissions:

    • Authentication required - recipients must sign in to Fudo Enterprise before they can access the session, and their identity is recorded in the access history. Any Fudo Enterprise user holding the link can sign in - the link is not bound to one specific person.

    • Anonymous - anyone with the link can access the session without signing in. Such viewers are recorded as Anonymous together with their source IP address.

Important

An anonymous viewer never sees the keystrokes recorded in the session - they are always masked, even when Show keyboard input is enabled. Anonymous viewers are also not counted towards the number of supervisors required by a live supervision policy. Choose Authentication required whenever you need either.

  1. Select the Session mode. This step is offered only for a session that is still running.

    • View only - the recipient can watch the session but cannot interfere with it.

    • Join - the recipient can also interact with the session.

  1. Click Generate link.

  1. Copy the address that matches the network the recipient can reach, and close the window.

    • Management address - for recipients who have access to the Fudo Enterprise management address.

    • UAG address - for recipients who reach Fudo Enterprise only through the User Access Gateway, for example external contractors.

../../_images/6-1-share-link-generated.png

What the Recipient Sees

A recipient opening a shared session is shown the recording itself, not the surrounding administrative context. Fudo Enterprise withholds that data in its API responses, so it is not available to the recipient in any form. In particular, the recipient does not see who conducted the session, the source and destination addresses, the names of the server, the safe and the account, or any information about the appliance and its licence.

Note

Keystroke visibility depends on the access permissions of the link. A viewer who signed in is subject to the usual rules for keyboard input, while an anonymous viewer never sees the typed characters. Refer to the Sensitive Features topic for details on keyboard input.

Regardless of the access permissions, a recipient cannot control the session - suspending, resuming and terminating a session are not available through a share link.


Managing Session Links

All links generated for a session are listed in the Share session window, divided into Active links and Inactive links.

../../_images/6-1-share-inactive-links.png

The following information is displayed for each link.

Column

Description

Access duration

Live session only, or the start and the end of the selected time window.

Access permissions

Authentication required or Anonymous access.

Session mode

View only or Join.

Generated

When the link was created.

Access history

Connections recorded for the link.

Actions

Copy access link - copies the management or the UAG address. Deactivate - deactivates the link.

Reason

Displayed for inactive links: why the link stopped working, together with the time.

Deactivating a Session Link

To deactivate a link, proceed as follows.

  1. Select Sessions.

  2. Find the desired session, expand the more options menu (.), and click ..

  3. In the Active links list, click Deactivate next to the link you want to disable. To disable every link of the session at once, click Deactivate all.

  4. Confirm with Deactivate link.

../../_images/6-1-share-deactivate-confirm.png

Important

A deactivated link stops working immediately. Everyone who has it loses access to the session, including its recording, and people already connected through it are disconnected.

The link is moved to the Inactive links list, where the Reason column shows why it stopped working - for example deactivated by user, or that its time window has expired.

Note

Deactivating a link does not remove the connections already recorded for it. They remain visible after the link itself is gone.

Related topics: