rem0te: credentials, sessions and the audit trail
How rem0te holds and releases each computer's credential (Connect, the desktop launcher and Quick Connect), how a credential rotation works without locking anyone out, what Sessions and the dashboard can and can't tell you, what the append-only audit log records and how to use it when someone leaves, and how to protect the server's secrets with its environment file and the backup and restore scripts.
- Level
- Intermediate
- Length
- About 50 minutes
- Contents
- 3 lessons · 1 video · final exam
- Status
- Published · updated 2 Oct 2026
- rem0te · open source
Skills you'll practise
- Explain where a computer's password is kept, when it is released and why integrations never see it
- Stage a credential rotation and say when the new password takes effect
- Answer 'who did what, on which machine, when' from Session History and the audit log
- Contain a departed user's access using the audit trail, disabling and rotation
- Back up and restore a rem0te server while treating the archive as a full-system secret
Course outline
- 1.rem0te: credentials, sessions and the audit trailVideo · 2 min
- 2.How a credential is held and releasedLesson · 17 min
- 3.Sessions and the audit logLesson · 17 min
- 4.Protecting the server's secretsLesson · 16 min
- 5.rem0te: credentials, sessions and the audit trail: knowledge checkKnowledge check · 16 questions
- 6.rem0te: a customer's office manager leaves with accessScenario
- 7.Final exam10 questions · passing it completes the course, so people who already know the material can test out
Sources it draws on
The lessons and questions are written from these references, so learners can go back to the original.
- rem0te docs: Architecture (identity and credentials, configuration chain, host metrics)
- rem0te docs: Connecting (Connect script, desktop launcher, Quick Connect)
- rem0te docs: Clients (technician downloads, managed installer, Quick Connect, configuring by hand)
- rem0te docs: Technician guide (enrolling, sessions)
- rem0te docs: Troubleshooting (password desync, reset admin password)
- rem0te docs: Access control (three levels, capabilities, business boundary, Quick Connect, migration)
- rem0te docs: Public API (keys, scopes, endpoints, response shapes, errors)
- rem0te docs: API reference (every route and its required capability)
- rem0te CHANGELOG (0.7.0 to 0.18.18: rotation, access model, device secret, inventory, reinstall agent, Tactical RMM)
- rem0te docs: Security audit (internal review by the project, v0.13.0)
- rem0te docs: Screenshot gallery (descriptions of each screen)
- rem0te apps/api/.env.example (annotated API configuration)
- rem0te docs: Setup guide (first business, enrolling, configuration reference, directory layout)
- rem0te deploy/scripts/rem0te-backup.sh (what the backup archive contains)
- rem0te deploy/scripts/rem0te-restore.sh (what a restore overwrites)
And 2 more.
See it with your own jobs and topics
Tell us about your team and we'll walk you through setup, from choosing jobs to your first skills check.