Multiple Roles for SMA Admins

Hello, we have KACE SMA 12.1.169. Can we only assign one role at a time to SMA admins? We use AD Groups for access to KACE and those groups are scoped to a role. The roles are assigned to device labels which have devices in them that they can patch. So if an admin is in ROLE A role to patch GROUP A Devices, what happens if I changed their role to ROLE B which only allows to manage GROUP B devices? Do they lose their access to GROUP A devices? We basically need admins in one role to also manage devices that are assigned in another role. In other words, we want ROLE A to Patch GROUP A & GROUP B devices. ROLE B can only patch GROUP B devices.         

0 Comments   [ + ] Show comments

Answers (2)

Posted by: Hobbsy 1 month ago
Red Belt

This is not possible as the roles and rights in the SMA are not granular enough to grant management of a set of devices to an individual administrator.

The only way you would be able to achieve this would be to use a multi org license to your SMA, then you will be able to create an Org for each admin and filter the devices into each org.

Posted by: lama01 1 month ago
Second Degree Green Belt

Thanks, I guess I will just use device labels and assign the device labels to the existing roles. 

Don't be a Stranger!

Sign up today to participate, stay informed, earn points and establish a reputation for yourself!

Sign up! or login


This website uses cookies. By continuing to use this site and/or clicking the "Accept" button you are providing consent Quest Software and its affiliates do NOT sell the Personal Data you provide to us either when you register on our websites or when you do business with us. For more information about our Privacy Policy and our data protection efforts, please visit GDPR-HQ