Using the Adobe Admin Console, organizations can define a flexible administrative hierarchy that enables fine-grained management of Adobe product access and usage. One or more System admins, provisioned during the enterprise onboarding process, sit at the top of the hierarchy. These System admins can delegate responsibilities to other admins, while still retaining overall control.
Administrative Roles provide the following key benefits to enterprises:
- Controlled decentralization of administrative responsibilities
- Quick view of product assignments—by user and by product
- Functionality to assign quotas to Product admins
The administrative hierarchy can be used to suit the unique requirements of your enterprise. For example, an enterprise can appoint different admins to manage entitlements to Adobe Creative Cloud and Adobe Marketing Cloud offerings. Alternatively, an enterprise can have different admins to manage entitlements of users belonging to different business units.
Team customers have only one admin role: System Admin. The other roles provide more granular control to administrative privileges but are applicable to enterprise accounts only.
Super user for the organization; allowed to perform all administrative tasks in the Admin Console.
Also, has permissions to delegate the following administrative functionality to other users: Product admin, Product Profile admin, User Group admin, Deployment admin, and Support admin.
Administers the products assigned to that admin and all associated administrative functions. These include:
|Product Profile Admin||
Administers the Product Profile descriptions assigned to that admin and all associated administrative functions. These include:
|User Group Admin||
Administers the user group descriptions assigned to that admin and all associated administrative functions. These include:
|Deployment Admin||Creates, manages, and deploys software packages and updates to end users.|
|Support Admin||Non-administrative role that has access to support-related information, such as customer-reported issue reports.|
For a detailed list of permissions and privileges for each admin role, see Permissions.
As an admin, you can assign an admin role to other users, giving them the same privileges as you have, or privileges for a role under your admin role in the hierarchy. For example, as a Product admin you can give Product admin privileges or Product Profile admin privileges to a user, but not Deployment admin privileges.
- The options on this screen depend on your account and admin role. You can either give the same privileges as you have, or privileges for a role under yours in the hierarchy.
- As the System Admin of a team, you can assign only one admin role: System Admin.
Select one or more admin roles.
For Admin types like Product Administrator, Product Profile Administrator, and User Group Administrator, select the specific products, profiles, and groups respectively.
For a Product Profile Administrator, you can include profiles for more than one product.
Alternatively, go to the details pages for Products, Product Profiles, or User Groups and click the Admins tab.
|Area||Permission||System admin||Product admin||Product Profile admin||User Group admin||Deployment admin||Support admin|
|Identity management||Add domain (request/claim a domain)||X|
|View domain and domain listing||X|
|Manage domain encryption keys||X|
|Manage default org password policy||X|
|View default org password policy||X|
|User Management||Add user to org||X||X||X|
|Remove user from org||X|
|View user details and user listing||X||X||X||X||X|
|Edit user profile||X|
|Add Product Profile to user or group||X||X²||X²|
|Remove Product Profile from user||X||X²||X²|
|Add Product Profile to many users||X||X²||X²|
|View product profiles for a user||X||X²||X²|
|View product user listing||X||X²|
|Bulk add users||X|
|Administrator Management||Grant Org Admin to a user/user group||X|
|Revoke Org Admin from a user/user group||X|
|Grant Product License Admin to a user/user group||X||X²||X²|
|Revoke Product License Admin from a user/user group||X||X²||X²|
|Grant Deployment Admin to a user/user group||X||X|
|Revoke Deployment Admin from a user/user group||X||X|
|Grant user group administration to a user/user group||X||X|
|Revoke user group administration from a user/user group||X||X|
|Grant product owner admin to a user||X||X²|
|Revoke product owner admin from a user||X||X²|
|Product License Configuration Management||Grant product entitlement to org|
|Remove product entitlement from org|
|View available products and product families||X||X²||X²|
|Edit product license descriptions/data||X||X²||X²|
|Provision product license to a user||X||X²||X²|
|Deprovision product license from a user||X||X²||X²|
|Add new product license configuration||X||X²|
|Edit product license service configuration||X||X²||X²|
|Delete product license service configuration||X||X²|
|Remove product access from a user(strip from all configs)||X||X²|
|Deployment||View/use deployment tab||X||X|
|Support||View support tab||X||X||X||X|
|Manage support cases||X||X|
|User Group Management||Create user group||X||X¹||X¹|
|Remove user group||X||X²|
|Add user to user group||X||X²|
|Remove user from user group||X||X²|
|Assign user group to product license||X||X²||X²|
|Remove user group from product license||X||X²||X²|
|View member of user group||X||X||X||X²||X|
|View list of user groups||X||X||X||X||X||X|