Admin Tier
DACategoria
IdentityPrivilégios
6Slug / ID
user-management-adminCategoria
IdentityAdmin Tier: Delegated Admin
Broad administrative permissions delegated from Super Admin. Can manage users, groups, or services across the whole organization.
Descrição
Can perform all actions on users who aren't administrators. This administrator can perform the following tasks both from the Admin console and using the Admin API.
Privilégios (6)
View user profiles and your organizational structure
View organizational units
Create and delete user accounts
Rename users and change passwords
Manage a user's individual security settings
Perform other user management tasks
API Privileges
O Google não publica os nomes de privilégio da API desta role. Eles só podem ser obtidos com privileges.list do Admin SDK, autenticado no seu próprio tenant. Preferimos declarar a lacuna a preencher com suposição.
Role Definition (JSON)
{
"roleId": "user-management-admin",
"roleName": "User Management Admin",
"roleDescription": "Can perform all actions on users who aren't administrators. This administrator can perform the following tasks both from the Admin console and using the Admin API.",
"rolePrivileges": [],
"isSystemRole": true
}