It provides a centralized and flexible tool for user management, helping MSP users to easily add or remove a member to quickly reflect the staffing change. With this new tool, MSP users no longer have to go into the settings of each Org and set up or remove Org admin and admin privileges one by one manually every time.
Teams means a group of members, and each team can be created to bind to all Organizations that you added to the organization lists.
You can access this page by clicking the MSP icon > Teams
Click Add Team
Enter a name for the team and select the privilege type
All-Org Privilege: This means the privilege of the team, So all the team members assigned to this team will have the same privilege
Admin: All the members in this team have admin privileges.
Viewer: All the members in this team have viewer privileges.
Custom: All the members in this team have different privileges.
Enter Description (optional) to help you identify the teams after you create and then click Apply
If the original user privilege is not equal to the team privilege for a specific org/network, higher privilege will take effect.
Go to the team management tab
Find the teams that you want to add the member in the Dropdown menu.
Click Add Member and then add the member you want
A SAML SSO function that allows MSPs to manage their team members using their own central authentication databases. Microsoft Active Directory Federation Services (ADFS) will be supported.
By enabling the SAML SSO function, a specific SSO login URL will be generated to handle the authentication tokens from external identity providers (IdP).
Custom Path: It allows MSPs to customize the ending URL, making it easier to be memorized by users.
Default Idp: IdP means the identity providers, The authority on a user's identity. It knows the user's username, password, and any groups/attributes. Currently, it is ADFS. Before selecting the idp, you need to create the Idp in idp list.
MSP admins can easily add a new IdP source by uploading the *.xml metadata from IdPs. Some IdP metadata might not contain a full IdP login URL, users have to input the login URL manually to make sure SSO login redirects successfully.
Detail Configuration Spec you can refer to https://docs.engenius.ai/cloud-configuration-guide/topics/saml-sso-with-adfs/feature-overview.
Whoever adds the MSP license is the MSP admin
The MSP admin can invite as many MSP admin as MSP needs. No more license is required
Only the MSP Admin has the MSP view and does management between Org’s