This article applies to TeamViewer customers with a Tensor license.
User groups are automatically created and maintained via the same integrations you can use for the account creation like SCIM configurations for Okta, Azure Active Directory etc., AD Connector or API.
Please note, that SCIM configurations are only available for customers with a Tensor license.
User groups are available in the User Management within the Management Console.
📌Note: To see the user groups, please activate the toggle Show User Groups.
Administrators can use User Groups to quickly filter the list of users in a company profile.
Maintaining TeamViewer Account in User Groups
Accounts are added, moved, and deleted via the abovementioned integrations. Any changes you make in Okta, Azure, etc., are being reflected automatically in the Management Console.
📌Please note: The Management Console does not offer any buttons or menus to do this manually.
📌 Note: Only integration into Identity Providers like Azure Active Directory or Okta provides for full automation. The AD Connector provides some guidance but still requires manual work and skill to get the work done. The API is only recommended to administrators who know how to work with APIs.
Assigning users from AD to a user group
Pre-defined user groups
There are 3 pre-defined user group name spaces in the MCO:
Each of these 3 user groups has its own set of permissions. When putting a user in your AD into one of these groups and synchronizing these groups and their users via the ADSync to the Management Console, the users will get the permissions tied to the user group:
- Every user moved into the user group "CompanyAdmin_ADsync" will get company administrator permissions.
- Every user moved into the user group "Admin_ADsync" will get user administrator permissions.
- Every user moved into the user group "User_ADsync" will get member permissions.
When you move a user out of one of these groups, it will keep its permissions as long as you don't move it into one of the other pre-defined groups (via the ADSync).
With User Groups, you can filter the list of users in your company profile easily.
By clicking on one of the available groups the accounts that belong to the group will immediately be showcased.
This also allows you to select specific users where you want to bulk change permissions and settings within the Management Console. Learn more here.
For Tensor customers, all changes to the User Groups via AD, API, and SCIM will be logged in the Event log.
Learn more about the Event Log here.