0D54z000091LRlQCAWOkta Classic EngineAdministrationAnswered2024-01-23T21:13:02.000Z2023-04-02T15:19:42.000Z2023-04-03T13:52:30.000Z

ElisaA.10071 (Customer) asked a question.

[custom role] "view users and their details" only shows logged in admin's profile

Hello, I want to grant Group Membership admin rights to a team of 5 people who need to manage several hundreds of groups but not all groups in the organization. The standard "Group Membership Admin" role has some limitations that I couldn't overcome, so I need to create a custom role with similar capabilities.

However, I discovered that "view users and their details" only allows access to logged in admin's profile, and I need to grant access to all user profiles in the tenant.

Is this a bug/known issue with this permission or am I missing something?

If there a workaround that I could use to grant the following permissions to my custom role:

  • View ALL users in the tenant
  • Add/remove users from the managed groups (subset of groups in the tenant)
  • If admins need to manage other subset of groups, they can receive a similar role targeting different resource sets.
  • Okta API can be used to create/update resource subsets with hundreds of groups for easier maintenance.

 

Thanks in advance for your help.


  • ElisaA.10071 (Customer)

    Never mind, I figured out. I just needed to edit the Resources set to add all users in the organization. This thread can be closed. Thanks!

This question is closed.

Recommended content

No recommended content found...