Skip to content

ARROW Manager Authentication

ARROW Manager has two ways in, and which you use comes down to whether the device can reach your organization’s identity provider. SSO uses your normal work account and is the right choice almost all the time. Local login uses a password stored on the device itself, and it is your fallback for when SSO is not an option: initial setup, an SSO outage, or a device sitting on a network that cannot reach your identity provider. SSO is what you see first; the local option is one click away on the same screen.

Use SSO unless you have a reason not to. When you open ARROW Manager, choose the SSO option and you are sent to your organization’s identity provider at auth.vtemlabs.com to sign in with your usual work credentials. Once you authenticate, you come back to ARROW Manager on the Dashboard.

SSO is the recommended path because it keeps everything tied to your existing account: there is no extra password to manage, your IT team controls access centrally, and if your organization requires multi-factor authentication, it applies here automatically.

The ARROW Manager sign-in screen with Arrow SSO The ARROW Manager sign-in screen with Arrow SSO

The ARROW Manager sign-in screen. SSO is the default; choose Use local login instead for direct device access.

The ARROW Manager sign-in screen with Arrow SSO The ARROW Manager sign-in screen with Arrow SSO

Local login gets you in with a password that lives on the device, so it works even when your identity provider does not. Reach for it during initial setup, when SSO is temporarily down, while troubleshooting an SSO or network problem, or when the device is on a network that cannot reach your organization’s login. Choose the “use local login” option on the sign-in screen, then enter:

  • Username: manager
  • Password: the ARROW Password for the device. You will find it in the ARROW Portal, under the device’s Actions menu.
ARROW Manager local login screen with username and password fields ARROW Manager local login screen with username and password fields

The local login screen. Enter the manager username and the device ARROW Password, then click Sign in.

ARROW Manager local login screen with username and password fields ARROW Manager local login screen with username and password fields

Once you sign in, you land on the Dashboard.

Either way, you need a working network path to the device. Beyond that:

Login MethodRequirements
SSOOrganization account with ARROW Manager access, and a network path to the device
LocalThe device password from the ARROW Portal, and a network path to the device

Once you are in, your session stays active while you work and lasts until you log out or it expires, and you can reach every section your account is allowed to use. To end it deliberately, click Logout in the top-right corner, which returns you to the login screen.

A session can also end on its own after a long stretch of inactivity, when its token expires, or because of a security policy. That is expected. When it happens, sign in again and pick up where you left off.

To keep things safe, log out when you are done, reach ARROW Manager over trusted network or VPN connections rather than open networks, and tell your administrator if you see account activity you do not recognize.

You cannot log in. Double-check the username and password first. If those are right, clear your browser cache and cookies, try a different browser, and confirm your network or VPN connection to the device is up, since a login page that will not accept credentials is often really a connection problem.

Your session keeps expiring. Sign in again, and if it happens repeatedly, check that your connection to the device is stable. If it continues, contact your administrator.

You get an access denied message after logging in. Your credentials worked, but your account may not be granted ARROW Manager access. Contact your administrator to confirm your permissions.