User Management
8 min
adding a new user in shi one this article explains how to add and edit a user and explains the different roles that please note that if you are using an identity service to use single sign on (eg entra or google sso), you can also manage access to shi one directly through that interface only admins can add, edit, and remove users to add a new user in the left sidebar, navigate to settings > user management click on the + add user button in the top right corner fill in the required user information if applicable, select the desired account select the appropriate role for the user for more information about role permissions, see the roles docid yq5q lmefb7haspcduey section below click save (optional) assign the user to all the necessary security groups for more information, see security groups docid\ bqvuyiv9eix4klu0n dip the new user will receive a welcome email with a link to shi one refer to the section first time login for users docid rykl3rqhvei kpjqpild for login steps editing a user to edit a user in the left sidebar, navigate to settings > user management select the user group of the user you would like to edit active users users who have set up their profiles and can access shi one awaiting approval users who have not yet been approved by an admin an admin must manually approve these users in order for them to access shi one pending profiles users who have been approved but who have not yet signed in to set up their profile inactive users users who cannot access shi one click on the pencil icon to the right of the user make your desired edits you can edit the status , first name , last name , phone number , or role for more information about editing a user's security group assignments, see security groups docid\ bqvuyiv9eix4klu0n dip click save note a user's email address cannot be changed within shi one as it is tied to multiple elements in the portal such as devices and support requests to change a user's email address, submit a support request and include the user's current email address and the new email address roles there are four roles within shi one user security group manager admin guest user admins can edit a user's status , role , first name , last name , and security group assignments as needed by navigating to settings > user management , clicking the orange pencil icon to the right of a user, making the desired changes, and clicking save users users are able to view data for only the contracts, permissions, and accounts associated with their assigned security group(s) submit support requests for only the contracts, permissions, and accounts associated with their assigned security group(s) view only their own support requests view information for only their own devices access this shi one knowledge base security group managers security group managers are able to a dd existing users to their assigned security group(s) granting manager permissions within their assigned security group(s) remove existing users from their assigned security group(s) be notified of configuration issues that may need to be escalated for their assigned security group(s) access this shi one knowledge base admins can designate security group managers for each security group admins admins have all user and security group manager permissions, plus are also able to support center view and update all support requests view information regarding all devices view information/usage/consumption on all contracts and services be notified of configuration issues that may need to be escalated settings generate a microsoft sso organization wide consent link (if applicable) update white label options for the shi one portal (e g logo, etc ) add new users to their account edit existing users on their account change a user's status to inactive, which removes that user's access to shi one change user roles and assign admins create and enable security groups add, edit, and remove all users across all security groups guest users guest users are temporary users that only have access to view specific features in shi one they can only be created by an shi employee on that account's team a guest user is able to view different types of assessments that they are explicitly granted access to view all labs on the account