Documentation

Install, connect, organize, govern.

Everything needed to run your team on ModiDesk, from the first client install to access rules in the console.

Install

Download the installer for your platform from the download page. On Windows, run ModiDesk-Setup.exe and choose Install, Install and enable unattended access, or Run once. For fleet rollout use the MSI with GPO, SCCM or Intune. On Linux, install the .deb or .rpm package or run the AppImage.

The client connects to the ModiDesk service out of the box, so you can test immediately. Pro users sign in to their organization; see section 05.

Make a connection

Open ModiDesk on both machines. On the device you want to control, read its ID and one-time password. On your machine, enter that ID in the connect box, press Connect and enter the password. The session is end-to-end encrypted; the relay only forwards ciphertext.

Unattended access

To reach a device with nobody in front of it, set a permanent password in Settings, or choose Install and enable unattended access in the installer. On Pro, access rules in the console decide which users may use unattended access on which devices, and each use appears in the connection log.

The managed service

ModiDesk runs as a managed service. The ID server, relay and admin console are operated by ModibusTech inside the European Union; there is no server for you to install, patch or back up. Clients verify the service by its public key, sessions are end-to-end encrypted, and the control plane holds connection metadata only.

Enterprise customers with data-residency or isolation requirements can request a dedicated instance pinned to a region, or a private deployment arranged with our team. Contact us to discuss requirements.

Create your organization (Pro)

Sign in to the admin console and create your organization. Invite users by email, connect Google, Microsoft or Apple sign-in, and require TOTP two-factor authentication for everyone. Users then sign in from the client with their organization account and their devices appear in the device dashboard. For fleets, generate a custom client with the organization settings embedded.

Custom client (Pro)

From the admin console you can build a custom client: your name and logo, your organization settings embedded, an optional preset unattended password and locked settings, delivered as a single portable .exe. Useful for support fleets and MSP customers.

Users, groups and access rules (Pro)

Invite users, assign roles and groups, and share address books from the console. Sign-in can use Google, Microsoft or Apple with TOTP two-factor authentication required. Under Access rules, block or allow by device ID, user or IP range; rules are evaluated by the ID server before a session is brokered, so a correct password does not override them.

Connection log and audit (Pro)

The Connection log records every attempt with source device ID and IP, target device ID and IP, the authenticated user where known, the outcome (established, ended, refused) and the duration. Refused attempts include the rule that matched. The Audit log records console actions such as rule changes, group membership and client builds, with actor and timestamp.

Security

All sessions are end-to-end encrypted; relays only forward encrypted bytes and never store session content. The security page covers the full model and Enterprise residency options.

Need more? Contact us. We are happy to walk through a rollout.