How to add accesses on your TinyMDM administrator console?
You can add managers to TinyMDM to prevent all admin from logging in with the same login and having the same access rights. In this tutorial, find out how to add managers, define their access and create structures.
Important info:
To create a new manager, the email you choose must not already be used as the main administrator of a TinyMDM account. If this is the case and you wish to change the email of the main administrator of the account in question, you can modify it by followingthis tutorial.
If the email address of the new manager is already being used as a manager on another TinyMDM account, then the manager will be able to connect to both accounts and potentially transfer devices between them.If you don’t want the manager to be able to transfer devices: when managing its permissions, uncheck the Change device’s user option in the Devices group. Find out more about transferring devices.
1. Create managers and assign them permissions
Go on to the Managers and Structure tab, under Managers subtab. You have three options for adding managers:
Import managers using a CSV file
Add a manager manually: You can create a manager who logs in with their email address and password or create a manager who connects directly with their Google account (Google SSO)
a. Create a manager with an email and password
Click Add a manager.
Select the connection method for this administrator.
You must fill in the Manager’s email field, as well as the Description and Manager group fields if necessary.
By default, the checkbox “Send an invitation email to the manager when submission is completed” is selected. This can be deselected if needed, and the email can be sent later.
Then click Next step. The administrator permissions page opens.
Check the box next to each action that the manager will be able to perform when logging into the administration console. All checked actions are considered permitted; all unchecked actions are prohibited. Note that you can select or deselect all permissions at once by clicking the icon .
Then click Create the manager at the bottom of the page
Finally, the manager can set up their password using the link sent via email, then log in to TinyMDM using their own credentials and in accordance with their permissions.
b. Create a manager with Google SSO
Click Add a manager.
Select the Google SSO connection method for this manager.
You must fill in the Manager’s email field, as well as the Description and Manager group fields if necessary.
By default, the checkbox “Send an invitation email to the manager when submission is completed” is selected. This can be deselected if needed, and the email can be sent later.
Then click Next step. The administrator permissions page opens.
Check the box next to each action that the manager will be able to perform when logging into the administration console. All checked actions are considered permitted; all unchecked actions are prohibited. Note that you can select or deselect all permissions at once by clicking the icon .
Then click Create the manager at the bottom of the page
Finally, the administrator receives an email instructing them to use the “Connect with Google” button each time they log in.
By clicking on Connect with Google button, the manager will have access to TinyMDM account according to their needs, and this without configuring their password.
c. Import managers
Start by creating a CSV file in the following format: <manager_email>;<manager_description>;<send_invitation>. Once the CSV file is ready, click Submit and upload your file. For your information, you can download a sample file by clicking here .
Once your CSV file has been imported, all your managers will appear in TinyMDM. To edit a manager’s permissions, click on their menu, then select Edit the manager.
The Information page will open. You can enter a description or add/change the manager’s group.
Click Next step and manage your permissions:
Modify the permitted actions for this manager by checking the permitted actions and unchecking the prohibited ones.
If you have requested to send an email to the managers, they will receive an email so that they can create their password and connect to TinyMDM with their email and password. If you want managers to log in with their Google account, please follow step b.
2. Add groups of managers
If you wish to create groups of managers with the same permissions on the admin console, you can create manager groups. To do this:
Go on to the Managers and Structure tab and then under Manager groups subtab.
On the top-right, click on Create manager group. The permissions page opens:
Enter the group name, then tick each action that managers in this group will be able to perform when logging on to the administration console. All checked actions are considered authorized; all unchecked actions are prohibited. Note that you can select or deselect all permissions at once by clicking the icon .
Once the group has been created and permissions authorized, return to the Managers sub-tab.
Select the managers you wish to appear in this group by ticking them off one by one.
In the blue banner that appears, click on the menu , then on Modify the group of selected managers. All selected managers will then be considered members of the same group.
Go further with the Structure feature
Creating managers does not require you to create a structure. However, if you need to limit the visibility of certain managers to only part of your mobile fleet, you can use TinyMDM’s Structure feature.