Licensed Users Report
The Licensed Users Report lists all AD users who have been assigned ADSelfService Plus licenses. It displays each user's OU and enrollment status, giving administrators a centralized view for managing license consumption across the organization.
To learn more about how ADSelfService Plus licensing works, see ADSelfService Plus licensing.
How it works
Licenses are automatically consumed — that is, assigned to user accounts — the first time a user performs any of the following actions:
- User login: When users successfully verify their identity and log in to the ADSelfService Plus portal for the first time.
- Technician creation: When administrators create technician accounts for help desk roles. One license is assigned per technician account created.
- Password reset: When users perform MFA for password resets using methods that do not require prior enrollment — such as email, SMS, and AD-based security questions and answers — for the first time.
- Account unlock: When users perform MFA for account unlocks using methods that do not require prior enrollment — such as email, SMS, and AD-based security questions and answers — for the first time.
- Machine login: When users perform MFA for machine logins using methods that do not require prior enrollment — such as email, SMS, and AD-based security questions and answers — for the first time.
- CSV or external database enrollment: When users are auto-enrolled using CSV files or from external databases. One license is consumed per imported user.
- Automatic password reset and account unlock: One license is consumed for each user under the OU or group where an automatic password reset or account unlock policy is applied.
Prerequisites
- You must have administrator or operator credentials to access the ADSelfService Plus portal.
- At least one AD domain must be configured in ADSelfService Plus.
Generating the report

To generate the Licensed Users Report:
- Log in to the ADSelfService Plus portal with admin or operator credentials.
- Go to Reports > Password Self-Service Reports > Licensed Users Report.
- Select the domain using the Select Domain drop-down.
- Optionally, use the Select OUs option to scope the report to specific organizational units.
- Use the Filter drop-down to narrow results by user category:
- Enrolled Users
- Non-enrolled Users
- Technicians
- Self-Service Licensed Users
- Endpoint MFA Licensed Users
- Click Generate.
Removing user licenses

Select one or more entries in the report to display the Remove Licenses option.
Sorting
Click any column header — except the Enroll Status column — to sort the report entries in ascending or descending order.
Searching
Click the search icon to search for specific entries within the report. You can search by:
- Username
- IP Address — the IP address of the device from which MFA was attempted
Searches use a contains match. For example, searching for jack in the Username column returns all usernames that contain the sequence jack.
Schedule Reports, Export As, and More
- Schedule Reports — Schedule automatic report generation at set intervals, and email results to administrators or specified addresses. See [LINK: "Schedule reports"] for instructions.
- Export As — Export the report in CSV, PDF, XLS, XLSX, HTML, or CSVDE format using the option in the top-right corner.
- More — The More menu in the top-right corner provides the following options:
- Printable View: Preview and print the report.
- Send Mail: Email the report to specified addresses.
- Export Settings: Configure a custom report title and header logo to display on each exported page.
Tips
- Use the Filter drop-down to identify non-enrolled licensed users — these users are consuming licenses without actively using ADSelfService Plus self-service features. Consider removing their licenses if they no longer require access, or prompt them to complete enrollment.
- Monitor license availability regularly using the License Info drop-down, especially after bulk user imports via CSV or external databases, as these automatically consume licenses.
- Users for whom licenses have been removed will be auto-assigned licenses again if they attempt to perform actions that require licenses. To prevent this, you can restrict their licenses in the Restrict Users section.
The Schedule Reports option at the top-right corner of the page can be used to schedule the generation of reports at specified intervals to set up an automated scheduler. Learn to schedule reports here.