ARROW Manager Authentication
ARROW Manager has two ways in, and which you use comes down to whether the device can reach your organization’s identity provider. SSO uses your normal work account and is the right choice almost all the time. Local login uses a password stored on the device itself, and it is your fallback for when SSO is not an option: initial setup, an SSO outage, or a device sitting on a network that cannot reach your identity provider. SSO is what you see first; the local option is one click away on the same screen.
Login Methods
Section titled “Login Methods”SSO Login (Default)
Section titled “SSO Login (Default)”Use SSO unless you have a reason not to. When you open ARROW Manager, choose the SSO option and you are sent to your organization’s identity provider at auth.vtemlabs.com to sign in with your usual work credentials. Once you authenticate, you come back to ARROW Manager on the Dashboard.
SSO is the recommended path because it keeps everything tied to your existing account: there is no extra password to manage, your IT team controls access centrally, and if your organization requires multi-factor authentication, it applies here automatically.
The ARROW Manager sign-in screen. SSO is the default; choose Use local login instead for direct device access.
Local Login
Section titled “Local Login”Local login gets you in with a password that lives on the device, so it works even when your identity provider does not. Reach for it during initial setup, when SSO is temporarily down, while troubleshooting an SSO or network problem, or when the device is on a network that cannot reach your organization’s login. Choose the “use local login” option on the sign-in screen, then enter:
- Username:
manager - Password: the ARROW Password for the device. You will find it in the ARROW Portal, under the device’s Actions menu.
The local login screen. Enter the manager username and the device ARROW Password, then click Sign in.
Once you sign in, you land on the Dashboard.
What You Need
Section titled “What You Need”Either way, you need a working network path to the device. Beyond that:
| Login Method | Requirements |
|---|---|
| SSO | Organization account with ARROW Manager access, and a network path to the device |
| Local | The device password from the ARROW Portal, and a network path to the device |
Sessions
Section titled “Sessions”Once you are in, your session stays active while you work and lasts until you log out or it expires, and you can reach every section your account is allowed to use. To end it deliberately, click Logout in the top-right corner, which returns you to the login screen.
A session can also end on its own after a long stretch of inactivity, when its token expires, or because of a security policy. That is expected. When it happens, sign in again and pick up where you left off.
To keep things safe, log out when you are done, reach ARROW Manager over trusted network or VPN connections rather than open networks, and tell your administrator if you see account activity you do not recognize.
Troubleshooting Login Issues
Section titled “Troubleshooting Login Issues”You cannot log in. Double-check the username and password first. If those are right, clear your browser cache and cookies, try a different browser, and confirm your network or VPN connection to the device is up, since a login page that will not accept credentials is often really a connection problem.
Your session keeps expiring. Sign in again, and if it happens repeatedly, check that your connection to the device is stable. If it continues, contact your administrator.
You get an access denied message after logging in. Your credentials worked, but your account may not be granted ARROW Manager access. Contact your administrator to confirm your permissions.
Related Documentation
Section titled “Related Documentation”- Overview - What ARROW Manager does
- Accessing ARROW Manager - How to connect to your device
- Troubleshooting - Common issues and solutions