Admin Guide
This guide is for administrators of a Cryptomator Hub instance. It covers users and groups, the connection to your identity provider, Emergency Access, the audit log, Web of Trust, and your license.
If your instance is fresh, start with the Quick Start. It walks you through your first day as an administrator. The other pages describe each area in detail.
If you also run the instance yourself, see the Self-Hosting Guide for deployment and maintenance.
Quick Start
Your first day as a Hub administrator — add users and groups, connect your identity provider, enable Emergency Access, and keep an eye on audit logs and license seats.
User & Group Management
Users and groups are managed directly in the Cryptomator Hub admin interface. As an administrator, you can create, edit, and delete users and groups, assign roles, and manage group memberships.
Identity Provider
Cryptomator Hub delegates authentication and user management to Keycloak, an open-source identity and access management solution. Hub ships with a preconfigured realm named cryptomator that contains the clients Hub needs and the realm roles user, create-vaults, and admin.
License
Every Cryptomator Hub instance requires a license.
Audit Logs
The Audit Logs provide an overview of security-related events within Cryptomator Hub.
Web of Trust
The Web of Trust (WoT) feature in Cryptomator Hub helps users verify each other's identity by signing the User Key Pair with their private keys using ECDSA.
Emergency Access
Visit cryptomator.org for more information about Enterprise features.