You can activate or deactivate the capabilities for a selected customer:

In the Operator portal, navigate to Manage Customers.

Select a customer and click Actions > Modify or click the link to the customer. You are redirected to the Enterprise portal.

In the left navigation panel, click Configure > Customers.

In the Customer Configuration page, select to activate or deactivate the Customer Capabilities:

Note: To enable Customer Capabilities, any System Properties associated with them must be assigned a True value. For more information, see System Properties.
  • Enable Enterprise Auth – By default, only the Operator can activate or deactivate two-factor authentication for an Enterprise. When you select this check box, the Enterprise Admins can configure the two-factor authentication on their own. This option also controls the activation and deactivation of Single Sign On (SSO).
  • Enable Legacy Networks – Allows an enterprise to use legacy networks. You cannot enable this option if you are using a segment-based Operator profile.
  • Enable Premium Service – This option is selected by default. Premium Service refers to the On-Demand Remediation feature that is a core part of SD-WAN's Dynamic Multipath Optimization (DMPO). DMPO is used for all traffic that traverses an SD-WAN Gateway. When Premium Service is selected, the Gateway uses Forward Error Correction (FEC) for customer traffic impacted by high levels of WAN link jitter or loss, and which cannot be steered to a better quality WAN link. When Premium Service is not selected, traffic still traverses the SD-WAN Gateway and benefit from other components of DMPO like Continuous Monitoring, Dynamic Application Steering, and Secure Traffic Transmission. However, traffic impacted by high levels of WAN link jitter or loss does not benefit from error correction by the Gateway. For more information, see the topic Dynamic Multipath Optimization (DMPO) in the VMware SD-WAN Administration Guide.
  • Enable Role Customization – Allows to activate or deactivate an Enterprise super user to customize the role privileges for other Enterprise users.
  • Enable Segmentation – Allows to configure segments and is enabled by default. You cannot modify this option.
  • Enable Stateful Firewall – Allows an enterprise user to activate or deactivate the Stateful Firewall feature at the profile and edge level. This option is enabled by default.
  • Delegate Management To Customer – The following options are always visible to customers. When you enable these options, customers can modify the settings.
    • CoS Mapping – Allows to configure CoS mapping while configuring a business policy.
    • Service Rate Limiting – Allows to rate limit services in a business policy.

After choosing the capabilities, click Save Changes.