Kasutusjuhend Tühista

Enable automatic account creation

  1. Adobe ettevõtetele ja meeskondadele: administreerimisjuhend
  2. Juurutamise planeerimine
    1. Põhimõisted
      1. Litsentsimine
      2. Identiteet
      3. Kasutajate haldamine
      4. Rakenduste juurutamine
      5. Admin Console'i ülevaade
      6. Administraatori rollid
    2. Juurutamisjuhised
      1. Nimeliste kasutajate juurutamisjuhend
      2. SDL juurutamisjuhend
      3. Adobe Acrobati juurutamine 
    3. Creative Cloud haridusasutustele – juurutamine
      1. Kasutuselevõtt kodus
      2. K-12 sisseelamisviisard
      3. Lihtne seadistus
      4. Kasutajate sünkroniseerimine
      5. Roster Sync K-12 (USA)
      6. Peamised litsentsimispõhimõtted
      7. Kasutuselevõtmise valikud
      8. Kiireid näpunäiteid
      9. Adobe rakenduste kinnitamine Google Admin Console'is
      10. Adobe Expressi lubamine Google Classroomis
      11. Integratsioon Canvas LMS-iga
      12. Integratsioon Blackboard Learniga
      13. SSO konfigureerimine piirkonna portaalide ja LMS-ide jaoks
      14. Kasutajate lisamine nimekirja sünkroonimise kaudu
      15. Kivuto KKK
      16. Esmaste ja teiseste asutuste õiguste suunised
  3. Oma organisatsiooni seadistamine
    1. Identiteeditüübid | Ülevaade
    2. Identiteedi seadistamine | Ülevaade
    3. Organisatsiooni seadistamine Enterprise ID-ga
    4. Azure AD föderatsiooni ja sünkroonimise seadistamine
      1. SSO seadistamine Microsoftiga Azure OIDC kaudu
      2. Azure'i sünkroonimise lisamine oma kataloogi
      3. Hariduse rollide sünkroonimine
      4. Azure Connectori KKK
    5. Google'i föderatsiooni ja sünkroonimise seadistamine
      1. SSO seadistamine Google'i föderatsiooniga
      2. Google Synci lisamine teie kataloogile
      3. Google'i föderatsiooni KKK
    6. Organisatsiooni seadistamine Microsoft ADFS-iga
    7. Organisatsiooni seadistamine piirkonna portaalide ja LMS-i jaoks
    8. Organisatsiooni seadistamine koos teiste identiteedi pakkujatega
      1. Kataloogi loomine
      2. Domeeni omandiõiguse kontrollimine
      3. Domeenide lisamine kataloogidele
    9. SSO levinud küsimused ja tõrkeotsing
      1. SSO levinud küsimused
      2. SSO tõrkeotsing
      3. Hariduse levinud küsimused
  4. Teie organisatsiooni seadistamise haldamine
    1. Olemasolevate domeenide ja kataloogide haldamine
    2. Automaatse konto loomise lubamine
    3. Organisatsiooni seadistamine kataloogi usalduse kaudu
    4. Üleminek uuele autentimise pakkujale 
    5. Varade sätted
    6. Autentimise sätted
    7. Privaatsuse ja turvalisuse kontaktid
    8. Konsooli sätted
    9. Krüpteerimise haldamine  
  5. Kasutajate haldamine
    1. Ülevaade
    2. Administratiivsed rollid
    3. Kasutajate haldamise strateegiad
      1. Kasutajate individuaalne haldamine   
      2. Mitme kasutaja haldamine (hulgi CSV)
      3. Kasutajate sünkroonimisvahend (UST)
      4. Microsoft Azure'iga sünkroonimine
      5. Google'i föderatsiooniga sünkroonimine
    4. Litsentside määramine Teamsi kasutajale
    5. Ühtivate e-posti domeenidega kasutajate lisamine
    6. Kasutaja identiteedi tüübi muutmine
    7. Kasutajarühmade haldamine
    8. Kataloogi kasutajate haldamine
    9. Arendajate haldamine
    10. Olemasolevate kasutajate migreerimine Adobe Admin Console'i
    11. Kasutajate haldamise migreerimine Adobe Admin Console'i
  6. Toodete ja õiguste haldamine
    1. Toodete ja tooteprofiilide haldamine
      1. Toodete haldamine
      2. Toodete ja litsentside ostmine
      3. Ettevõtte kasutajate tooteprofiilide haldamine
      4. Automaatse määramise reeglite haldamine
      5. Kasutajatele Firefly kohandatud mudelite treenimise õiguse andmine
      6. Tootetaotluste läbivaatamine
      7. Iseteeninduse poliitikate haldamine
      8. Rakenduste integratsioonide haldamine
      9. Toodete õiguste haldamine Admin Console'is  
      10. Teenuste lubamine/keelamine tooteprofiili jaoks
      11. Üks rakendus | Creative Cloud ettevõtetele
      12. Valikulised teenused
    2. Jagatud seadmete litsentside haldamine
      1. Mis on uut
      2. Juurutamisjuhend
      3. Pakettide loomine
      4. Litsentside taastamine
      5. Profiilide haldamine
      6. Litsentsimise tööriistakomplekt
      7. Jagatud seadmete litsentsimise KKK
  7. Global Admin Console'iga alustamine
    1. Globaalse administreerimise kohandamine
    2. Organisatsiooni valimine
    3. Organisatsiooni hierarhia haldamine
    4. Tooteprofiilide haldamine
    5. Administraatorite haldamine
    6. Kasutajarühmade haldamine
    7. Organisatsiooni poliitikate uuendamine
    8. Poliitikamallide haldamine
    9. Lasteorganisatsioonidele toodete eraldamine
    10. Ootel tööde käivitamine
    11. Ülevaadetega tutvumine
    12. Organisatsiooni struktuuri eksportimine või importimine
  8. Salvestusruumi ja varade haldamine
    1. Salvestusruum
      1. Ettevõtte salvestusruumi haldamine
      2. Adobe Creative Cloud: salvestusruumi uuendamine
      3. Adobe salvestusruumi haldamine
    2. Varade migratsioon
      1. Automatiseeritud varade migratsioon
      2. Automatiseeritud varade migratsiooni KKK  
      3. Ülekantud varade haldamine
    3. Varade tagasinõudmine kasutajalt
    4. Üliõpilaste varade migratsioon | ainult EDU
      1. Automaatne üliõpilaste varade migratsioon
      2. Teie varade migratsioon
  9. Teenuste haldamine
    1. Adobe Stock
      1. Adobe Stocki krediidipaketid meeskondadele
      2. Adobe Stock ettevõtetele
      3. Adobe Stock ettevõtetele kasutamine
      4. Adobe Stocki litsentside heakskiitmine
    2. Kohandatud fondid
    3. Adobe Asset Link
      1. Ülevaade
      2. Kasutajarühma loomine
      3. Adobe Experience Manageri varade konfigureerimine
      4. Adobe Asset Linki konfigureerimine ja installimine
      5. Varade haldamine
      6. Adobe Asset Link XD jaoks
    4. Adobe Acrobat Sign
      1. Adobe Acrobat Signi seadistamine ettevõtte või meeskondade jaoks
      2. Adobe Acrobat Sign – meeskonna funktsiooni administraator
      3. Adobe Acrobat Signi haldamine Admin Console'is
    5. Creative Cloud ettevõtetele – tasuta liikmesus
      1. Ülevaade
  10. Rakenduste ja uuenduste juurutamine
    1. Ülevaade
      1. Rakenduste ja uuenduste juurutamine ja tarnimine
      2. Juurutamise planeerimine
      3. Juurutamise ettevalmistus
    2. Pakettide loomine
      1. Rakenduste pakendamine Admin Console'i kaudu
      2. Nimeliste kasutajate litsentsipakettide loomine
      3. Adobe pakettide mallid
      4. Pakettide haldamine
      5. Seadmete litsentside haldamine
      6. Seerianumbrite litsentsimine
    3. Pakettide kohandamine
      1. Creative Cloudi töölauarakenduse kohandamine
      2. Laienduste kaasamine teie paketti
    4. Pakettide juurutamine 
      1. Pakettide juurutamine
      2. Adobe pakettide juurutamine Microsoft Intune'i abil
      3. Adobe pakettide juurutamine SCCM-iga
      4. Adobe pakettide juurutamine ARD-ga
      5. Toodete installimine erandite kausta
      6. Creative Cloudi toodete desinstallimine
      7. Adobe provisioning toolkit enterprise editioni kasutamine
      8. Adobe Creative Cloudi litsentsimistunnused
    5. Uuenduste haldamine
      1. Adobe ettevõtte ja meeskondade klientide muutuste haldamine
      2. Uuenduste juurutamine
    6. Adobe Update Server Setup Tool (AUSST)
      1. AUSST ülevaade
      2. Sisemise uuenduste serveri seadistamine
      3. Sisemise uuenduste serveri haldamine
      4. AUSST tavalised kasutusjuhud   
      5. Sisemise värskenduste serveri tõrkeotsing
    7. Adobe Remote Update Manager (RUM)
      1. Adobe Remote Update Manageri kasutamine
      2. RUM-i vigade lahendamine
    8. Tõrkeotsing
      1. Creative Cloudi rakenduste installimise ja deinstalleerimise vigade tõrkeotsing
      2. Klientide masinate päring, et kontrollida, kas pakett on kasutusele võetud
      3. Creative Cloudi paketi veateade „Installimine ebaõnnestus”
  11. Meeskonnakonto haldamine
    1. Ülevaade
    2. Makseandmete uuendamine
    3. Arvete haldamine
    4. Lepinguomaniku muutmine
    5. Plaani vahetamine
    6. Edasimüüja muutmine
    7. Plaanist loobumine
    8. Ostutaotluse nõuetele vastavus
    9. Meeskonna haldamine Adobe Expressis
  12. Uuendamised
    1. Meeskonnaplaanide liikmesus: uuendamine
    2. Ettevõtte VIP: uuendamised ja nõuetele vastavus
  13. Lepingute haldamine
    1. ETLA lepingute automatiseeritud aegumise etapid
    2. Lepingutüüpide vahetamine olemasolevas Adobe Admin Console'is
    3. Value Incentive Plan (VIP) Hiinas
    4. VIP Select abi
  14. Aruanded ja logid
    1. Auditilogi
    2. Määramise aruanded
    3. Sisulogid
  15. Abi saamine
    1. Ühenduse võtmine Adobe klienditeenindusega
    2. Meeskonnakontode tugivõimalused
    3. Ettevõtluskontode tugivõimalused
    4. Experience Cloudi tugivõimalused

System Administrators can enable users to automatically create a federated account with the organization.

  To enable automatic account creation for an existing directory, sign in to the Adobe Admin Console, navigate to Settings, select a directory, and then select Authentication > Edit.

Automatic Account Creation

Märkus.

This feature is only available to Adobe enterprise customers who have set up one or more federated directories in the Admin Console.


Overview

Automatic account creation allows users without a federated account to automatically create one with their organization based on a verified email domain. When enabled for a federated directory, new users with a valid email domain of that directory will be able to create a federated account. Learn more about federated accounts.

Adobe strongly recommends you enable automatic account creation for the following benefits:

  • Federated users can participate in sharing and collaboration flows with their org-owned account versus a personal account using an org-owned domain.
  • Federated users can sign in securely via single sign-on.
  • Automation speeds up the process of setting up users in your directory with little or no involvement from the administrator.
  • Administrators can control the federated users' product licenses, cloud-stored assets, and sharing restrictions.

You can set up automatic assignment rules that assign products automatically to eligible users in your organization (or specified domains and directories) and enable product requests that allow end users to request access to products for administrator review.

User experience

When a user enters their email address to create an account, they are given a choice to create an account with their organization if the email address entered meets the following criteria:

  • Has a valid email domain from the federated directory
  • Is not associated with an existing Adobe account
Create an account screen displaying the Sign in button under the Email address field
Sign in with SSO to create an account with your organization.

The user should select Sign in under the Email address field and successfully authenticate with their organization’s single sign-on to complete the account creation. This triggers the flow of information from the identity provider to the Admin Console so that federated Adobe accounts are created automatically within the identified federated directory based on the user’s domain.

User accounts created through automatic account creation indicate the creation source in the User Details. Administrators can manage the accounts of any users added through automatic account creation, including removing them from the Users and Directory Users lists as needed. Administrators' actions are captured in the Audit Log report.


Enable or disable automatic account creation

System Administrators can enable or disable automatic account creation per identity provider within each federated directory, allowing eligible users to get a federated account without any other action from an administrator.

The feature must be enabled by an administrator for an existing federated directory, while it is enabled by default for all new federated directories created in your Admin Console. Here's how you can edit existing directories to enable automatic account creation:

Märkus.

You can only enable automatic account creation for the federated domains that your organization owns and has claimed. Trustees of your federated directories cannot enable or disable automatic account creation.

  1. Sign in to the Admin Console and navigate to Settings > Identity.
  2. Select an active federated directory by clicking the name of the directory, then navigate to Authentication.

  3. Select Edit to enable or disable automatic account creation.

    IdP card displaying the option to edit the configuration settings
    Edit identity provider configuration settings.

  4. Navigate to step 2 in the Edit auto-account creation wizard.

  5. Use the toggle to enable or disable automatic account creation for the identity provider.

    If you disable automatic account creation for an identity provider, new users in your organization who have valid accounts with domains of that identity provider will no longer be able to create a federated account automatically. However, users who have already created a federated account will retain access to their account.

    Edit auto-account creation wizard with the toggle enabled for auto-account creation
    Use the toggle to enable auto-account creation for the IdP.

  6. Select a default country from the dropdown menu in the Attribute mappings section.

    The identity provider configuration with the Adobe Admin Console is created and owned by an organization and linked to the directory via federation. Adobe reads the first name, last name, email, and country to create accounts with appropriate attributes. Email is the only required attribute for account creation and all others are optional, though Adobe recommends including all attributes to distinguish users in the Admin console.

    Adobe reads the following default values for user attributions from the federation token:

      SAML Azure OIDC OIDC
    First name FirstName given_name given_name
    Last name LastName family_name family_name
    Email Email email email
    Country CountryCode ctry address.country

     

    The value mapped to the country field is populated in the user’s profile if shared from the organization’s directory. If no value is provided or the provided value isn't an Adobe-supported country, accounts will get provisioned without a country set by default. You also have the option to specify a default country that will get set on the user's profile in such cases instead. Learn more about federated directory setup.

  7. You can also choose to update user information in Admin Console when users log in.

    User attribute information can change in your directory after a federated Adobe account is created. You have the option to update user data in Adobe at sign-in by choosing the best option for your organization. The following options are available:

    Don't update

    User attribute information is not updated on user sign-in (default option).

    Always update

    User attribute information is always updated on user sign-in.

    Update when not empty

    Only non-empty user attribute information is updated on user sign-in. For example, if a user signs in and the organization’s directory shares an updated last name and no first name, only the last name will be updated to match the revised value and the first name will be preserved as the value already stored in the user’s Adobe account.

  8. Select Done.

    Märkus.

    If an identity provider (IdP) or its parent directory is no longer active, automatic account creation is automatically disabled for the IdP. This change in status does not impact other IdPs within the federated directory, allowing automatic account creation to remain enabled with other active IdPs as needed.


Frequently asked questions

Where can users find the option to automatically create a federated account with my organization?

Users who don't already have an Adobe account will get the option to sign in with their SSO and auto-create a federated account when creating an account on the Adobe sign-in screen. 

What benefits are available to users who automatically create an account with my organization?

Once a user has an account with their organization, that user can participate in collaboration and share workflows with other team members, as well as request access to products from their organization based on how the administrators have configured the automatic assignment rule and product request features.

What if I want to allow users to create other types of Adobe accounts automatically with my organization? 

Currently, only federated accounts can be created automatically. A future phase of Zero Touch Administration will allow users to create other types of Adobe accounts with their organizations. 

Can users who are not using a domain that my organization has claimed still have an account automatically created?

Only users who have an organization-provided account whose domain falls within the federated directory enabled for automatic account creation can create a federated account on-demand. The user must be able to successfully authenticate via single sign-on for account creation to be completed.

Does account creation automatically provide any product licenses to the user?

Automatic account creation only creates a new federated account for a user and does not automatically assign product licenses. A user can request access to Adobe products from their organization once they are a member based on how the administrators have configured the automatic assignment rule and product request features.

How do I remove a user from my Admin Console who automatically created their account?

Users who created a federated account on-demand can be removed from the organization by a System or User Administrator via the User List. Removing the user from the Directory User List will permanently delete their account and all license access.

Can users automatically create an account in a federated directory that has Azure or Google Sync configured?

A user can create an on-demand federated account in a directory where Azure or Google Sync has been configured. Once created, the user is under sync management, meaning their account cannot be edited via the Admin Console unless the sync is temporarily paused. If the user is added to the automated sync scope, their user information will be updated in their Adobe profile via the directory attribute mapping.

Will a user who already has a personal Adobe account under a domain my organization owns be presented with the option to create a new federated account under the same email address at sign-in?

Only users who are creating an account with their organization-owned domain will be offered the option to create a federated account on-demand. If a user is already using their org-owned email domain for personal use, they can choose to change the email address associated with the account, allowing them to create a federated account on-demand with their org-owned email domain.

 Adobe

Saage abi kiiremini ja hõlpsamalt

Uus kasutaja?

Adobe MAX 2024

Adobe MAX
Loovuse konverents

14.–16. oktoobril Miami Beachis ja veebis

Adobe MAX

Loovuse konverents

14.–16. oktoobril Miami Beachis ja veebis

Adobe MAX 2024

Adobe MAX
Loovuse konverents

14.–16. oktoobril Miami Beachis ja veebis

Adobe MAX

Loovuse konverents

14.–16. oktoobril Miami Beachis ja veebis