Browse Docs
-
Introduction
-
Deployment
- Deployment via RMM
- Operating System Agent
- Deployment via GPO
- Deployment via Intune
- VDI and Remote Desktop Services (RDS)
- Windows Manual Deployment
- Mac MDM Deployment
- Mac Manual Deployment
- Network Deployment
- Secure Mobile Browser
- Bypass Option
- SaaS Restrictions
- Bookmark Manager
- Remote Uninstall
- Bulk Create Customers
-
Management
-
Integrations
-
Nexi AI
-
Policy Management
-
Secure Access (ZTBA)
-
Auto Pilot
-
Training Videos
-
Questions & Answers
-
MSP Automation
ONLINE DOCUMENTATION
|
||
Managing Admin Roles with Azure AD GroupsIn this document
Azure AD groups can be used to determine whether admins receive Global Partner Admin or Limited Admin access in DefensX. Admins who are not assigned to a team receive Global Partner Admin privileges by default. When users are assigned to a team, their access is limited according to the permissions and customer scope configured for that team. Adding an Azure Partner Admin GroupNavigate to: Management → Settings → Azure AD & Active Directory Under Azure partner admin groups, enter the Azure AD group name or Object ID, and then click Add. Click Update to save the configuration.
Members of the configured group are recognized as Partner Admins in DefensX. All Partner Admins, whether Global or Limited, shoud be added to this group so that DefensX can assign them the appropriate admin rights. Assigning Global Partner Admin AccessWhen an Azure AD group is added under Azure partner admin groups but is not mapped to a team, the admins in that group are not restricted by a team assignment. These users receive Global Partner Admin access and have full access across the partner backend. Assigning Limited Admin AccessTo restrict the admins in an Azure AD group, navigate to: Admin Users & Teams → Team Management Create a new team or edit an existing team, and configure the required permissions and customer access.
In the Azure Mapped Group field, select a different Azure AD group than the one that was added under Azure partner admin groups. This group should contain only the admins who should be members of that group and have limited access.
When the group is mapped to the team, admins who belong to that group are assigned to the team and become Limited Admins. Their access is limited according to the permissions and scope configured for the team.
|
||