Skip to content

Quick start

This walks you from an empty workspace to an enforced Windows sign-in.

Sign up at app.dynacop.com. Sign-in is passwordless: you enter your email, receive a magic link and a 6-digit code, then set up your authenticator (scan the QR into Google Authenticator, Microsoft Authenticator, or Authy). Your first 10 people are free.

In the panel, go to Resources → Add resource. Choose a label and generate a registration code (single-use, or a reusable key for fleet deployment). Then download Dynacop Setup.

Run Dynacop-Setup.exe on the Windows machine and paste the registration code (or install silently). The agent registers the machine to your workspace and starts reporting to the panel within a minute.

A fresh machine has no people linked, so nobody can pass MFA yet — not even you. On the resource page, use First Access / Connect myself to bind your own account to a Windows account on that machine.

In Resource Users (or the resource’s accounts), invite each person by email. They receive an enrollment link, scan a QR into their authenticator, and they’re ready — even if everyone signs in as the shared Administrator.

On the resource, open its protection settings: Require MFA on (console / RDP / both — new resources default to both) controls which sign-ins ask for the second factor, and Enforce removes the password-only fallback so MFA can’t be bypassed. Turn Enforce on once your people are enrolled.

Enable attack blocking to automatically block brute-force source IPs in Windows Firewall — and note it needs Windows Firewall enabled.

That’s it. Next, read the core concepts so the panel makes sense.