Download PDF
Download page Manage User Accounts.
Manage User Accounts
This page provides details for managing users in the Account Management Portal.
Every user employs the same sign-in for both the Account Management Portal and specifically assigned Tenants.
User Management Overview
The Accounts Management Portal allows Company Admins and License Admins to create users, globally manage user accounts, and assign Tenants through the User Management UI.
- For Observability Platform tenant user account administration, you manage all aspects of the user account exclusively through the Account Management Portal.
- For SaaS Controller Tenant user account administration, editing a user account through the Account Management Portal affects the user for all Cisco AppDynamics components and some Controller Tenant rights simultaneously. Managing a user account through a Controller Tenant UI affects permissions for that Tenant only.
Every Cisco AppDynamics user that you register has subscription-based access to Cisco AppDynamics University and unlimited access to Cisco AppDynamics Community for FAQs and user forums. See Cloud Native Application Observability Account Administration and Cisco AppDynamics SaaS User Management.
User Status
A user account can have one of three possible statuses:
- Active—user has a valid email account that authenticates with either the Cisco Customer Identity (IdP) or your custom IdP.
- Pending—user is in the system, but they did not yet validate their email.
- Inactive—user cannot access Cisco AppDynamics components.
Option User Status | Add | View | Edit | Inactivate | Activate | Delete |
---|---|---|---|---|---|---|
Active | ||||||
Pending | ||||||
Inactive |
When you create a user that authenticates through the Cisco Customer Identity (IdP), they receive a time-sensitive email prompting them to activate their account by creating a username and password. A user is in Pending status until they complete the activation process.
Once complete, the user can perform certain functions according to their assigned company role. However, they do not have access to a Tenant until or unless an administrator adds the user account to a Tenant.
Editing functions become visible according to user status. Click the appropriate UI icon to perform the described function.
User Types
Cisco AppDynamics users can be Company Users or Guest Users. Company Users belong to one organization that has a Cisco AppDynamics account. The Company Administrator owns and manages the Company User's access, roles, and lifecycle. The Company Administrator can also add Guest Users, grant them access to tenants, and assign them roles without configuring the Guest User authentication or manage the user's lifecycle.
This table outlines the differences between the two user types:
User Type | Use Cases | Requirements | Tenant Access |
---|---|---|---|
Company User | Employees within the same organization who need long-term access to the company's AppDynamics account and tenants. |
| Company Users sign in to their company's AppDynamics account through the authentication configured by the Company Administrator. From the company's AppDynamics account, Company Users can launch Observability Platform tenants owned and managed by the company. When a Company User leaves the organization, their access to the company's AppDynamics account is typically deactivated to maintain security. |
|
| Like Company Users, Guest Users sign in to their company's AppDynamics account through the authentication configured by the Company Administrator. From their company's AppDynamics account, Guest Users can also launch tenants where they have been added as Guest Users. When a Guest User leaves the organization, their access to the company's AppDynamics account is also typically deactivated to maintain security. Because Guest Users sign in with the authentication configured by their Company Administrator, they also lose access to non-company AppDynamics accounts. Company Administrators can revoke the Guest User's access to their company's Observability Platform tenants, but they cannot deactivate the user or modify the user's information. |
*You can only add Guest Users on Observability Platform tenants. Company Administrators for Cisco AppDynamics SaaS and on-prem deployments do not have the option to add Guest Users.
Create New Users
The steps for creating new users depend on the Cisco AppDynamics products. Follow the steps for your licensed product:
Observability Platform tenants | Cisco AppDynamics SaaS | Cisco AppDynamics On-Premises |
---|---|---|
Before You Begin
When creating a new user, Cisco AppDynamics recommends:
Using only ASCII characters for user names and passwords because of browser incompatibilities.
Choosing at least one role for the new user. Although it is possible to assign a role after creation, the user has very limited functionality until a role is assigned.
Only users with Company Admin or License Admin roles can create new users. When we provision a new license for you, we automatically provision a new License Admin user account for that license.
Create a New User
Sign in to your Account Management Portal.
Navigate to Access Management > User Management.
- Select Company Users.
Click and select Add a Single User or Add Multiple Users.
To add a single user, enter the user email and, optionally, the user name.
To add multiple users concurrently, paste or type a list of user emails. The system ignores existing emails.
Click Submit.
If you see the following message, continue to Add Tenants to Users.The user email you entered is owned by another company. This user will be added to your account as a Guest User when you click Next.
- (Optional) Enter the first and last name of the user.
Select an IdP option through Authenticated By:
- Cisco Customer Identity—Cisco acts as the Service Provider. The user name must already exist as a Cisco Identity.
My IdP—the user authenticates through your Service Provider. The user name must already exist in the IdP database.
- Optionally, select one or more Company Roles.
- Company Admin—can create and manage users, assign roles/licenses/Tenants, and configure company preferences.
- Support—can open and manage Support requests with AppDynamics.
License Admin—can view and assign licenses on Controller Tenants to which they have access rights.
If you do not select a role, the user defaults to the Company User role with limited account access. See User Permissions Matrix.
- Click Next.
- Continue to Add Tenants to User.
Add Tenants to User
You can only add tenants to users if you Cisco Observability Platform licenses and associated Observability Platform tenants.
- From Add a User > (2) Assign Tenants, select the tenant names that you want the user to access.
- (Required) Add the user to one or more tenants.
- Click Create & Next.
- From (3) Assign Tenant Roles, click Close.
- Click Assign.
- Continue to Assign Roles to User.
Assign Roles to User
You can only assign users to roles if you Cisco Observability Platform licenses and associated Observability Platform tenants.
- From the Assign Roles dialog, check the desired roles from the Default Roles and Custom Roles tabs.
- Click Save.
- Click Close.
Manage Existing Users
You can create and manage company users and guest users. See User Types to understand the differences.
Company Users
When Cisco AppDynamics deploys a new Observability Platform tenant in your environment, you must assign users to it through the Accounts Management Portal before they can access it. Likewise, when you create a new user, you can assign them to one or more licensed tenants.
- Navigate to Access Management > User Management.
- Select Company Users.
- Select a user and click .
From the Observability Platform Tenant Access panel, click Add FSO Tenant & Role.
- From the Assign Tenant dialog, select a tenant to grant access to the user.
- Click Save.
- From Assign Tenant Roles.
- From Edit User, click Save.
When AppDyanamics deploys a new Observability Platform tenant in your environment, you must assign users to it through the Accounts Management Portal before they can access it. Likewise, when you create a new user, you can assign them to a Tenant and a role.
- Navigate to Access Management > User Management.
- Select Company Users.
- Select a user and click .
- From Observability Platform Tenant Access, click next to the Observability Platform tenant you want to assign roles to the user.
- From the Assign Roles dialog:
- Select the default roles from the Default Roles tab that you want to assign to the user.
- Select the custom roles from the Custom Roles tab that you want to assign to the user.
- Click Save.
- From Edit User, click Save.
The Edit UI allows Company Admins and License Admins to edit Company Roles accordingly. See Company Role Options.
You cannot edit the email address because it is the user's primary system security identification and user name for logging in.
- Navigate to Access Management > User Management.
- Select Company Users.
- Select a user and click .
- Update Basic Information as necessary.
Optionally, update available Company Roles.
Assign or unassign available Observability Platform Licenses and Controller Licenses. Some fields are disabled as Company Admins and License Admins have different rights.
If you select the License Admin role, you must select at least one Observability Platform License Name or Controller License Name to which the user can administer.
A License Admin can only control access to a license to which they have access rights, but they can view other licenses in the company account.
Click Save.
The user you update must refresh their browser to view the edits.
The Edit UI allows Company Admins and License Admins to edit Company Roles accordingly. See Company Role Options.
You cannot edit the email address because it is the user's primary system security identification and user name for logging in.
- Navigate to Access Management > User Management.
- Select Company Users.
- Select two or more users and click .
- From the Access dropdown, select one of the following:
- Change Authenticated Method - You can change the method for authenticating the user to an Identity Provider (IdP) or the Cisco Customer Identity. If you have set up SAML for the user, you will want to select the IdP used for the SAML configuration.
- Select an authentication method for the users.
- Click Primary.
- From the confirmation message, click Click here for more details to view the Status Report dialog.
- Assign Platform Tenants to Selected Users - You can add users to one or more
Observability Platform tenants and assign the users to roles.
- Select the tenants that you want the users to access.
- Click Next.
- Click next to the tenant where you want to assign one or more roles.
- From the Assign Roles dialog:
- Select the default roles from the Default Roles tab that you want to assign to the user.
- Select the custom roles from the Custom Roles tab that you want to assign to the user.
- Click Save.
- Change Authenticated Method - You can change the method for authenticating the user to an Identity Provider (IdP) or the Cisco Customer Identity. If you have set up SAML for the user, you will want to select the IdP used for the SAML configuration.
Click Save.
You can view only users with certain Roles, Statuses, Observability Platform tenants, or Controller Tenant assignments using the Filter panel. If you select multiple Tenants, the filter displays all users for each Tenant cumulatively.
- Navigate to Access Management > User Management.
- Select Company Users.
- Click to open the Filter panel.
- Check the box next to the desired options.
Click Apply.
Inactivating users will prevent them from logging in to any Cisco AppDynamics role-based component, including all associated Tenants.
You can only activate a user that has Inactive status. You can only inactivate a user that has Active status. Pending users do not have Active status by default.
To activate a user:
- Select one or more users with the Inactive status.
- Click .
- Verify that you want to continue.
The user retains access to appdynamics.com and related services.
To inactivate a user:
- Select one or more users with the Active status.
- Click .
- Verify that you want to continue.
The user remains inactive until the admin either deletes or deactivates the account.
When you delete a Observability Platform tenant user through the Account Management Portal, the deletion is permanent. However, when you delete a Controller Tenant user through the Controller Tenant UI, their account is still in Active status in the Account Management Portal. This ensures the user can still access other Controller Tenants to which they may have access rights.
Deleting a user in the Account Management Portal is permanent and is not reversible.
You can only delete a user with Inactive status. Users with Active status must be set to Inactive before you can delete them.
- Select one or more users with the Inactive status.
- Click .
- Click Delete to verify the action.
Cisco AppDynamics emails the user notifying them that their account is no longer available.
Guest Users
Guest Users are only available on Observability Platform tenants.
When Cisco AppDynamics deploys a new Observability Platform tenant in your environment, you must assign users to it through the Accounts Management Portal before they can access it. Likewise, when you create a new user, you can assign them to one or more licensed tenants.
- Navigate to Access Management > User Management.
- Select Guest Users.
- Select a user and click .
From the Observability Platform Tenant Access panel, click Add FSO Tenant & Role.
- From the Assign Tenant dialog, select a tenant to grant access to the user.
- Click Save.
- Click Cancel.
- From Edit Guest User, click Save.
When AppDyanamics deploys a new Observability Platform tenant in your environment, you must assign users to it through the Accounts Management Portal before they can access it. Likewise, when you create a new user, you can assign them to a Tenant and a role.
- Navigate to Access Management > User Management.
- Select Guest Users.
- Select a user and click .
- From Observability Platform Tenant Access, click next to the Observability Platform tenant you want to assign roles to the user.
- From the Assign Roles dialog:
- Select the default roles from the Default Roles tab that you want to assign to the user.
- Select the custom roles from the Custom Roles tab that you want to assign to the user.
- Click Save.
- From Edit Guest User, click Save.
You can view only users with certain Roles, Statuses, Observability Platform tenants, or Controller Tenant assignments using the Filter panel. If you select multiple Tenants, the filter displays all users for each Tenant cumulatively.
- Navigate to Access Management > User Management.
- Select Guest Users.
- Click to open the Filter panel.
Check the box next to the desired options.
Click Apply.
You can only remove a Guest User from a tenant. You cannot delete the user permanently. If you accidentally remove a Guest User from a tenant, you can always re-add the Guest User to the tenant.
- Navigate to Access Management > User Management.
- Select Guest Users.
- Select a user and click .
- From the Remove Guest User from Tenant dialog, click Continue.
Cisco AppDynamics emails the user notifying the Guest User that he or she has been removed from the tenant.
User Roles and Permissions
Role Options
A role is a collection of permissions defining actions a user can perform within the Cisco AppDynamics-managed environment. There are several company roles available:
Role | Functionality |
---|---|
Company Admin |
|
License Admin |
To remove the Primary Contact from the role, you must open a support request with Cisco AppDynamics and provide a new Primary Contact for the license. |
Support | Provide users with the ability to open and manage support requests with Cisco AppDynamics. |
Tenant User |
|
Company User (default) | Users default to this role if you do not select a specific role for them.
|
These predefined roles allow administrators to define a user's actions in the Observability Platform tenant. They are Observability Platform tenant-specific with default permissions set and are not editable.
Cisco Observability Platform modules can also create roles through Solution Principals. Thus, if you subscribe to modules for Cloud Native Application Observability, you may see other roles in the Account Management Portal.
Role | Permissions | Supported Assignees |
---|---|---|
Agent |
|
|
Config Manager |
|
|
Observer (Default) | Only has read-only access, but may not necessarily have access to read privileged information such as access configurations. Users default to this role if you do not select a specific role for them.
|
|
Tenant Administrator | A Tenant Administrator can access everything on a tenant except a public API that is not mapped to a permission. |
|
Troubleshooter |
|
|
Role Permissions
This table provides global role permissions for Cisco AppDynamics users. To review Observability Platform tenant-specific role permissions, navigate to Access Management > Observability Platform tenant Roles, click on a role, and review the Permissions list.
Roles Permissions | Company Admin | License Admin | Support User | Tenant User | Company User |
---|---|---|---|---|---|
Add User | |||||
Edit User Name | |||||
Edit User Status | |||||
Delete User | |||||
Configure SAML | |||||
Assign Company Admin Role | |||||
Assign License Admin Role | |||||
Assign Support Role | |||||
Manage Service Principals | |||||
View Professional Services Projects | |||||
Assign Education Subscriptions | |||||
Edit License MAC Address | |||||
View License Usage | |||||
Assign Licenses | |||||
Launch a Tenant | |||||
Log in to an assigned Tenant | |||||
View Open Tickets | |||||
Create a New Ticket | |||||
View Active Resources | |||||
Access Downloads | |||||
View Account Details | |||||
Access Cisco AppDynamics University | |||||
Access Cisco AppDynamics Community | |||||
Manage Profile | |||||
Customize Notifications |