Navodila za uporabo Prekliči

Set up organization via directory trust

  1. Adobe za podjetja in skupine: vodnik za skrbništvo
  2. Načrtovanje uvedbe
    1. Osnovni pojmi
      1. Licenciranje
      2. Identiteta
      3. Upravljanje uporabnikov
      4. Uvedba programov
      5. Pregled konzole Admin Console
      6. Skrbniške vloge
    2. Vodniki za uvedbo
      1. Vodnik za uvedbo imenovanih uporabnikov
      2. Vodnik za uvedbo licenciranja naprave v skupni rabi
      3. Uvedba programa Adobe Acrobat 
    3. Uvedba storitve Creative Cloud za izobraževalne ustanove
      1. Začetna stran za uvajanje
      2. Čarovnik za uvajanja za osnovno- in srednješolsko izobraževanje
      3. Preprosta nastavitev
      4. Sinhronizacija uporabnikov
      5. Roster Sync K-12 (ZDA)
      6. Najpomembnejši pojmi glede licenciranja
      7. Možnosti uvajanja
      8. Hitri nasveti
      9. Odobritev programov Adobe v storitvi Admin Console v Googlu
      10. Omogočanje programa Adobe Express v Učilnici Google
      11. Integracija s storitvijo Canvas LMS
      12. Integracija s storitvijo Blackboard Learn
      13. Konfiguriranje enkratne prijave za okrožne portale in storitve LMS
      14. Dodajanje uporabnikov s storitvijo Roster Sync
      15. Pogosta vprašanja o storitvi Kivuto
      16. Smernice za upravičenost glavnih in pomožnih ustanov
  3. Nastavitev organizacije
    1. Vrste identitet | Pregled
    2. Nastavitev identitete | Pregled
    3. Nastavitev organizacije z Enterprise ID-jem
    4. Nastavitev združevanja in sinhronizacije storitve Azure AD
      1. Nastavitev enkratne prijave z Microsoftom prek storitve Azure OIDC
      2. Dodajanje storitve Azure Sync v imenik
      3. Sinhronizacija vlog za izobraževanje
      4. Pogosta vprašanja o storitvi Azure Connector
    5. Nastavitev združevanja in sinhronizacije Google
      1. Nastavitev enkratne prijave z združevanjem Google
      2. Dodajanje sinhronizacije Google v imenik
      3. Pogosta vprašanja o združevanju Google
    6. Nastavitev organizacije s storitvijo Microsoft ADFS
    7. Nastavitev organizacije za okrožne portale in LMS
    8. Nastavitev organizacije z drugimi ponudniki identitet
      1. Ustvarjanje imenika
      2. Preverjanje lastništva domene
      3. Dodajanje domen v imenike
    9. Pogosta vprašanja o enkratni prijavi in odpravljanju težav
      1. Pogosta vprašanja o enkratni prijavi
      2. Odpravljanje težav pri enkratni prijavi
      3. Pogosta vprašanja o izobraževanju
  4. Upravljanje nastavitve organizacije
    1. Upravljanje obstoječih domen in imenikov
    2. Omogočanje samodejnega ustvarjanja računa
    3. Nastavitev organizacije prek zaupanja imenika
    4. Selitev na novega ponudnika preverjanja pristnosti 
    5. Nastavitve sredstev
    6. Nastavitve preverjanja pristnosti
    7. Stiki za zasebnost in varnost
    8. Nastavitve konzole
    9. Upravljanje šifriranja  
  5. Upravljanje uporabnikov
    1. Pregled
    2. Skrbniške vloge
    3. Strategije upravljanja uporabnikov
      1. Upravljanje posameznih uporabnikov   
      2. Upravljanje več uporabnikov (skupinska datoteka CSV)
      3. Orodje za sinhronizacijo uporabnikov
      4. Sinhronizacija Microsoft Azure
      5. Sinhronizacija združevanja Google
    4. Dodelitev licenc uporabniku računa za skupine
    5. Upravljanje uporabnikov v programu za skupine
      1. Upravljanje skupine v programu Adobe Express
      2. Upravljanje skupin v programu Adobe Acrobat
    6. Dodajanje uporabnikov z ustreznimi e-poštnimi domenami
    7. Sprememba vrste identitete uporabnika
    8. Upravljanje uporabniških skupin
    9. Upravljanje uporabnikov imenika
    10. Upravljanje razvijalcev
    11. Selitev obstoječih uporabnikov v storitev Adobe Admin Console
    12. Selitev upravljanja uporabnikov v storitev Adobe Admin Console
  6. Upravljanje izdelkov in pravic
    1. Upravljanje izdelkov in profilov izdelkov
      1. Upravljanje izdelkov
      2. Nakup izdelkov in licenc
      3. Upravljanje profilov izdelkov za poslovne uporabnike
      4. Upravljanje pravil samodejnega dodeljevanja
      5. Omogočite uporabnikom učenje modelov Firefly po meri
      6. Pregled zahtev za izdelke
      7. Upravljanje samopostrežnih pravilnikov
      8. Upravljanje integracij programov
      9. Upravljanje dovoljenj za izdelke v storitvi Admin Console  
      10. Omogočanje/onemogočanje storitev za profil izdelka
      11. En program | Creative Cloud za podjetja
      12. Izbirne storitve
    2. Upravljanje licenc za naprave v skupni rabi
      1. Novosti
      2. Vodnik za uvedbo
      3. Ustvarjanje paketov
      4. Obnovitev licenc
      5. Upravljanje profilov
      6. Komplet orodij za licenciranje
      7. Pogosta vprašanja o licenciranju naprav v skupni rabi
  7. Predstavitev konzole Global Admin Console
    1. Uvedba globalnega skrbništva
    2. Izbira organizacije
    3. Upravljanje hierarhije organizacije
    4. Upravljanje profilov izdelkov
    5. Upravljanje skrbnikov
    6. Upravljanje skupin uporabnikov
    7. Posodobitev pravilnikov organizacije
    8. Upravljanje predlog pravilnikov
    9. Dodelitev izdelkov podrejenim organizacijam
    10. Izvajanje čakajočih opravil
    11. Raziskovanje vpogledov
    12. Izvoz ali uvoz strukture organizacije
  8. Upravljanje prostora za shranjevanje in sredstev
    1. Prostor za shranjevanje
      1. Upravljanje shrambe podjetja
      2. Adobe Creative Cloud: Posodobitev na shrambo
      3. Upravljanje prostora za shranjevanje Adobe
    2. Selitev sredstev
      1. Avtomatizirana selitev sredstev
      2. Pogosta vprašanja o avtomatizirani selitvi sredstev  
      3. Upravljanje prenesenih sredstev
    3. Povrnitev sredstev od uporabnika
    4. Selitev sredstev študentov | Samo za izobraževanje
      1. Samodejna selitev sredstev študentov
      2. Selitev lastnih sredstev
  9. Upravljanje storitev
    1. Adobe Stock
      1. Paket kreditnih točk Adobe Stock za skupine
      2. Adobe Stock za podjetja
      3. Uporaba storitve Adobe Stock za podjetja
      4. Odobritev licence za Adobe Stock
    2. Pisave po meri
    3. Adobe Asset Link
      1. Pregled
      2. Ustvarjanje uporabniške skupine
      3. Konfiguracija storitve Adobe Experience Manager Assets
      4. Konfiguracija in namestitev storitve Adobe Asset Link
      5. Upravljanje sredstev
      6. Adobe Asset Link za XD
    4. Adobe Acrobat Sign
      1. Nastavitev storitve Adobe Acrobat Sign za podjetja ali skupine
      2. Adobe Acrobat Sign – skrbnik funkcije skupine
      3. Upravljanje storitve Adobe Acrobat Sign v storitvi Admin Console
    5. Creative Cloud za podjetja – brezplačno članstvo
      1. Pregled
  10. Uvedba programov in posodobitev
    1. Pregled
      1. Uvedba in zagotavljanje programov in posodobitev
      2. Načrtovanje uvedbe
      3. Priprava na uvedbo
    2. Ustvarjanje paketov
      1. Ustvarjanje paketov programov v storitvi Admin Console
      2. Ustvarjanje licenčnih paketov imenovanih uporabnikov
      3. Upravljanje vnaprej ustvarjenih paketov
        1. Upravljanje predlog Adobe
        2. Upravljanje paketov z enim programom
      4. Upravljanje paketov
      5. Upravljanje licenc za naprave
      6. Licenciranje serijske številke
    3. Prilagoditev paketov
      1. Prilagoditev namiznega programa Creative Cloud
      2. Vključitev razširitev v paket
    4. Uvedba paketov 
      1. Uvedba paketov
      2. Uvedba paketov Adobe s storitvijo Microsoft Intune
      3. Uvedba paketov Adobe z upraviteljem SCCM
      4. Uvedba paketov Adobe s storitvijo ARD
      5. Namestitev izdelkov v mapo za izjeme
      6. Odstranitev izdelkov Creative Cloud
      7. Uporaba Adobejevega kompleta orodij za zagotavljanje (izdaja za podjetja)
    5. Upravljanje posodobitev
      1. Upravljanje sprememb za Adobejeve stranke podjetij in skupin
      2. Uvedba posodobitev
    6. Nastavitveno orodje strežnika za posodabljanje Adobe (AUSST)
      1. Pregled orodja AUSST
      2. Nastavitev notranjega strežnika za posodabljanje
      3. Vzdrževanje notranjega strežnika za posodabljanje
      4. Pogosti primeri uporabe orodja AUSST   
      5. Odpravljanje težav z notranjim strežnikom za posodabljanje
    7. Adobe Remote Update Manager (RUM)
      1. Opombe ob izdaji
      2. Uporaba programa Adobe Remote Update Manager
    8. Odpravljanje težav
      1. Odpravljanje napak pri namestitvi in odstranjevanju programov Creative Cloud
      2. Poizvedba v odjemalskih računalnikih za preverjanje uvedbe paketa
  11. Upravljanje računa za skupine
    1. Pregled
    2. Posodobitev podatkov za plačilo
    3. Upravljanje izdanih računov
    4. Sprememba lastnika pogodbe
    5. Zamenjava paketa
    6. Zamenjava prodajalca
    7. Preklic paketa
    8. Skladnost zahteve za nakup
  12. Podaljšanje
    1. Članstvo za skupine: podaljšanje
    2. Podjetja v storitvi VIP: podaljšanje in skladnost
  13. Upravljanje pogodb
    1. Avtomatizirane faze izteka za pogodbe ETLA
    2. Zamenjava vrste pogodbe v obstoječi storitvi Adobe Admin Console
    3. Value Incentive Plan (VIP) na Kitajskem
    4. Pomoč za VIP Select
  14. Poročila in dnevniki
    1. Revizijski dnevnik
    2. Poročila o dodelitvi
    3. Dnevniki vsebine
  15. Pomoč
    1. Stik z Adobejevo službo za skrb za stranke
    2. Možnosti podpore za račune za skupine
    3. Možnosti podpore za račune za podjetja
    4. Možnosti podpore za rešitev Experience Cloud

You can use directory trust to authenticate your users against a domain already claimed by another organization.

Directory trusting

Only one organization at a time can claim a domain's ownership. Thus, consider the following scenario:

A company, Geometrixx, has multiple departments, each of which has its own unique Admin Console. Also, each department wants to use Federated user IDs, all using the geometrixx.com domain.  Each department's system administrator would want to claim this domain for authentication.

The Admin Console prevents a domain from being added to multiple organizations' Admin Console. However, once added by a single department, other departments can request access to the directory to which that domain is linked on behalf of their organization's Admin Console.

Directory trusting allows a directory owner organization to trust other requesting organizations (trustees). After this, trustee organizations in the Admin Console can add users to any domain within the trusted directory.

To summarize, you must add a domain if you plan to use Enterprise ID or Federated ID on your Admin Console. If another organization has already added this domain, you must request trustee access to the directory containing this domain. However, when the trustee organization adds users to the trusted domains, they are authenticated based on the owning organization's identity management.

To request access to a directory, follow the steps in Add domains to directories.

Pozor:
  • As an owner of a directory, if you approve an access request for a directory, the trustee organization will have access to all domains linked to the directory, as well as any domains linked to that directory in the future. So planning the domain-to-directory linking is essential as you set up the identity system in your organization.
  • Before adding, requesting, revoking, or withdrawing a trust request, we strongly recommend that you export a user list from the Admin Console or Consoles involved prior to making changes. This list will provide a snapshot of all user data, including name, email, assigned product profiles, and assigned admin roles in case you need to roll back.
  • There are specific steps to migrating a domain that includes a trust relationship. You should not revoke a trust relationship when migrating a trusted domain to prevent the loss of user account and product access in the trustee’s organization.

Domain trustee (Requesting organization)

Follow the process below if you want to request access to a directory owning your desired domain:

If you add existing domains to the Admin Console, you are prompted with the following message:

If you request access to this domain; your name, email, and organization name are shared with the system administrators of the owning organization.

Since the owner already set up the domain, you do not need to take any additional action as the trustee. When the owner accepts the access request, your organization can access the directory and all its domains, as configured by the owning organization.

  1. Sign in to the Admin Console and navigate to Settings > Identity.

  2. Go to the Access Requests tab and check the status against each directory for which you have requested access.

  3. You can also click the row item in the list of access requests and click Resend Request or Cancel Request.

If the owning organization accepts your request for access to the directory, you receive an email notification. Your trust request disappears and is replaced by the trusted directory and its domains with Active (trusted) status in your Directories and Domains listings.

Go ahead and add users and user groups and assign them to product profiles.

As the trustee organization, if you no longer have a need to access the trusted directory, you may withdraw your trustee status at any time.

  1. Sign in to the Admin Console and navigate to Settings > Identity.

  2. In the Directories tab, click the shared directory to withdraw your access from.

  3. In the directory details drawer, click Withdraw.

If you withdraw your access to a trusted directory, any users associated with the domains in that directory are removed from your organization. However, these users could still access their assigned apps, services, and storage.

To stop users from using the software, remove them from Admin Console > Users > Remove users. Then, you can reclaim the deleted users' assets since your organization owns these assets.

Domain owner (Owning organization)

When you get an email request for access to a directory you own, you can accept or reject the request from the email itself. Or, navigate to the Access request tab in the Admin Console to manage claim requests.

  1. Sign in to the Admin Console and navigate to Settings > Identity.

  2. Go to the Access Request tab.

  3. To accept all the requests, click Accept All.

    Or to accept requests for specific claims, click the check box to the left of each row and click Accept.

  4. In the Accept Access Request screen, click Accept.

An email notification is sent to the System admins of the trustee organizations.

You can also choose to reject the request for access to a directory that you own.

  1. Sign in to the Admin Console and navigate to Settings > Identity.

  2. Go to the Access Request tab.

  3. Click the check box to the left of each row and click Reject.

  4. In the Reject Access Request screen, enter a reason for the rejecting the request and click Reject.

The reason that you provide, is shared with the requesting organization via email. However, your email, name, and organizational information are withheld.

You can revoke the access of a trustee organization for which you have previously given access.

  1. Sign in to the Admin Console and navigate to Settings > Identity.

  2. Go to the Trustees tab.

  3. Click the check box to the left of each row and click Revoke.

  4. In the Revoke Trustee screen, click Revoke.

If you revoke access to a trusted directory, any users associated with the domains in that directory are removed from the trusted directory. However, these users could still access their assigned apps, services, and storage.

To stop users from using the software, trustee admins can remove them from Admin Console > Users Remove users. Then, they can reclaim the deleted users' assets since the trustee organization owns these assets.

Directory trusting - Common questions

When a user is added to a trustee organization, the user is authenticated by the owning organization's identity setup. This holds true for new users on the trustee organization or for existing users on the owning organization.

When the user on a trustee organization signs into Adobe apps or services, the user is prompted with the Federated ID or Enterprise ID sign-in workflow, as set up on the owning organization.

Also, the user may be given entitlements from either the owning or trustee organizations. In this case, we will create a profile for each organization (owning or trustee) to which the users belongs. A profile helps to keep entitlements and assets isolated from each organization. So, the assets created by a user under a specific profile belong to that organzation. If a user leaves an organization, the assets are reclaimed by the admin of that organization.

Read more:

After your trustee organization is migrated, all your users are signed out of their accounts and will need to sign back in. Since these users are also users in the owning organzation, they may be given entitlemnts from the owning as well as the trustee organizations. In this case, we will set up profiles for the users. So, when signing back into their accounts, your users may be prompted with a profile chooser.

If required, your users may read how to manage Adobe profiles.

Pridobite pomoč hitreje in preprosteje

Ali ste nov uporabnik?