Three predefined administrator roles are built into the Workspace ONE Access service, super administrator, read-only administrator, and directory administrator. If the built-in roles don't meet the specific needs of your organization, you can create custom roles.
When you create a role, you can add one or more services to the role. You name the role, select the type of services and the specific actions within the service that the role can manage. See Managing Administrator Roles in Workspace ONE Access.
- When you create a role that includes the Directory Management service, the Identity and Access Management service must also be configured in the role.
- When you create a role that includes the Roles Administration service, the User and Groups service must also be configured with the actions to manager users and to manage groups selected.
Prerequisites
To create a role in the Workspace ONE Access service, you must be a super admin, also known as the system domain admin. The super admin can access and manage all features and functions in the Workspace ONE Access services. Admin users that are assigned the role configured with the Roles Administration service can also create roles.
Procedure
What to do next
Assign this role to users to make them administrators of this service.
