Efficient EMM User Management using SureMDM

EMM User Management

Numerous organizations realized that simply adopting an EMM solution is not enough. To handle an extensive platform to monitor, secure and manage a huge number of mobile devices, a comprehensive admin management policy is essential. A setup where multiple administrators exist with customized permissions and their own defined responsibilities could make the overall management streamlined and efficient.

SureMDM offers comprehensive admin user management features through User Management option. You can use this option to add multiple administrators, customize their permissions by assigning them to groups, functions or specific features.

 

User Management in SureMDM

SureMDM User Management option currently allows customizing user permissions for all existing and new administrators using the following set of permissions:

Group Permissions:

Specify and limit an admin to only certain functions that can be performed on the allowed group(s). For example, you can restrict an admin from creating a new group by unchecking New Group option under Group Permissions.

Allow Home Group – Uncheck this option if you want to restrict the user from accessing Home folder. However, the user will still have access to sub-folders under Home. This is helpful when you do not want the users to have access to new enrolled devices which generally gets added to Home group.

Allow new device group – Uncheck this option if you do not want the user to have access to new groups which are created post this permission is applied. For example, if you have disabled this permission for a user today at 11.00 AM, any groups created after that will not appear on the console for the user.

Device Action Permissions:

Use options listed under this section to specify what actions the admin is allowed to perform on the enrolled devices. For example, you can restrict an admin from applying a new job to a device by unchecking Apply Job option under Device Action Permissions.

Device Management Permissions:

Use this section to restrict the admins to only specified management functions that they can perform on the enrolled devices. For example, an admin can be allowed to just approving the device by unchecking all options under this section except Approve device.

Application Settings Permissions:

This section allows an admin to select and permit the SureMDM Web Console users to perform only certain application settings related functions like uninstalling an application or locking an application with a password on an enrolled device.

Job Permissions:

Job refers to a set of instructions which can be remotely applied to enrolled devices for execution. You can use options under Job Permissions to specify and limit an admin to only certain Job-related functions. For example, you can restrict an admin from modifying any existing job by unchecking Modify Job option under section.

Report Permissions:

There is a list of reports that you can pull using Reports option on SureMDM Web Console. You can use options listed under Report Permissions to allow or restrict an admin from viewing or downloading specified report(s). For example, if you uncheck Asset Tracking Report under this section, the specified admin with this particular permission will not be able to view or download Asset Tracking Report.

User Management Permissions:

The set of options under this section allows an admin to specify the permissions to either allow or restrict the SureMDM Web Console users from adding, editing and deleting new users. For example, if only Edit User option is checked under this section, the user would be able to only edit permissions for users and not add a new user or delete existing users.

Other Permissions:

You can use the options listed under this section to permit or restrict users from view and export Activity Log or change the login password to access SureMDM Web Console.

Allowed Groups:

This section can be used to select only those desired group(s) that you want the users to manage. For example, if you check all groups except 01 (as shown in the screenshot below), the user will be able to perform permitted functions on devices under all other groups except 01.

Allowed Job Folders:

Use this section to give users permission to only selected Job Folder(s). Once a list of  Job Folders are checked and selected, the user will be able to edit, delete or apply jobs only under these specified folders. For example, if only 03Oct2016 and 0S30/09 folders are selected (as shown in the screenshot below), the user would be able to edit, delete or apply jobs only under these two folders.

How to add a new user with customized permissions?

To add a new user and customize the permissions, follow below-mentioned steps:

1. Login to SureMDM Web Console

2. On SureMDM Home, click on Settings located at the top right of the console

3. Select User Management from the drop down menu

4. On User Management prompt, click on Add User

5. On Create New User prompt, enter following details and click on User Permissions

  • User Name
  • Password
  • First Name
  • Last Name
  • Email
  • Phone number

6. On User Permissions prompt, either select from the following three permissions presets or select Custom to customize the permissions

  • All Permissions
  • Administrator
  • Helpdesk

7. If Custom selected, uncheck the permissions that the user should be restricted from using

8. Once done, click OK to go back to Create New User prompt

9. On Create New User prompt, click on Create to complete

Note: You can use Edit User or Delete User on User Management prompt to edit the user’s credentials and permissions or delete users from the list respectively.

To explore more such features which can make mobile device management easier, click here.

 

Leave a Comment