Assign Roles to Active Directory Groups for
Workspace ONE Access
Workspace
ONE Access
uses role-based access
control to manage delegation of roles. You assign the Super Admin
,
Directory Admin
and ReadOnly
roles to Active
Directory groups to manage access to Workspace
ONE Access
.You assign the following administrator roles to the corresponding user groups.
Workspace ONE Access Role | Example Active Directory Group Name |
---|---|
Super Admin | wsa-admins |
Directory Admin | wsa-directory-admin |
ReadOnly Admin | wsa-read-only |
- In a web browser, log in toWorkspace ONE Accessby using the administration interface to the System Domain withconfigadminuser (https://<wsa_fqdn>/admin).
- On the main navigation bar, clickRoles.
- AssignWorkspace ONE Accessroles to Active Directory groups.
- Select theSuper Adminrole and clickAssign.
- In theUsers / User Groupssearch box, enter the name of the Active Directory group you want to assign the role to, select the group, and clickSave.
- Repeat this step to configure theDirectory Adminand theReadOnly Adminroles.