¿How limit a user of type "account" with administrator privilege in Control Panel?
I have a MSP and I need to give permission of administrator to that the customer manage your environment (tenant).
When I setup this user with administrator role, the user can see everything groups, users and sites of the other customers.
I need that the user only see you environment (Tenant).
Is possible this ?
Are you configuring the account in Infrastructure Manager or using the Account Admin portlet in UMP?
Accounts configured in IM will see all resources in the UIM environment. Account Admin contacts, however, can be restricted to specific origins.
I am using the Account Admin portlet in UMP. and the user have the ACL administrator
The account only have your origin, but i don't know why the user have acceso to all group and user, sites from Control Panel
Assuming we are talking about Liferay (Go to-->Control Panel in UMP), I do not believe there is a way to limit this -- it's all-or-nothing.
oh... that is a problem for my MSP, because my service is *You have the control of your account and Tenant administration.