Skip to main content

First Login

Default Credentials​

OrbisID ships with a single administrator account:

FieldValue
Usernameadmin
PasswordChangeMe123!
warning

Change the default password immediately after your first login. The default credentials are publicly documented.

Logging In​

  1. Open your OrbisID instance in a browser (e.g., https://your-orbisid-host)
  2. Enter the default username and password
  3. You will be prompted to set a new password

If OIDC/SSO has been configured (Enterprise edition), a Sign in with SSO button will also appear.

Changing Your Password​

After login, you can change your password at any time:

  1. Click your username in the top-right corner
  2. Select Profile
  3. Enter your current password and choose a new one

Passwords must meet the requirements defined in the Password Policy.

Initial Setup Prompt​

The first time an administrator logs in, a one-time Initial Setup dialog asks you to confirm four independent preferences — each can also be changed later in Administration > Settings:

PreferenceDefaultWhere to change it later
Check for UpdatesOnAdministration > Settings
Send Anonymous Usage StatisticsOnAdministration > Settings
AI LLMOnAdministration > Settings > OrbisAI
Smart Matching & SuggestionsOnAdministration > Settings > OrbisAI

The last two enable OrbisID's AI/Intelligence Layer — see AI Assistant (OrbisAI) for what each one powers, including the OrbisAI chat assistant, risk narratives, and the AI-assisted linking/classification suggestions across Accounts, PAM Inventory, and Policy Rules. Both are local-only and independent of each other; turning either off here (or later) doesn't require restarting anything.

Session Behaviour​

BehaviourValue
Inactivity timeout60 minutes
Absolute session lifetime8 hours
Failed login lockout5 attempts
Lockout duration30 minutes

After 60 minutes of inactivity (no API calls), you will be redirected to the login page. Sessions also expire 8 hours after login regardless of activity.

If you enter an incorrect password 5 times in a row, the account is locked for 30 minutes.

User Interface Overview​

The OrbisID interface is divided into:

  • Sidebar (left) - main navigation grouped by function
  • Content area (centre) - the active page
  • Header (top) - user menu, notifications, version info

Roles​

OrbisID has three user roles. Each role includes all permissions of the roles below it.

RoleAccess
AdministratorFull access including user management, settings, API keys, licence, and OIDC configuration
IAM Governance ManagerCan manage systems, credentials, scan policies, identities, and PAM inventory
IAM Governance AnalystRead-only access to dashboards, reports, accounts, KRIs, and scan history

Menu items that require a higher role or a licence upgrade are hidden or show a lock icon.