When creating a SaaS Alerts account you may choose a single authentication method. This means that if you have email and password authentication and would like to use Microsoft or Google OAuth your current account must first be deleted and then a new invitation send. Once you receive your new invite you may select the desired authentication method while you create your new account.
If you are the only SaaS Alerts user for your instance you will want to create a temporary MSP Admin user (that is accessible from a different email or authentication method) and then login as that user to remove and reinvite your primary user account.
Step 1 Delete the account that you wish to change the authentication method of. You must be logged in as an MSP Admin. Navigate to Settings -> Users and then click the Trash can icon on the user that you are deleting. If this option is not present this means the account is an MSP Admin and the user must first be demoted to an MSP User. Click the edit icon on the row of the user being deleted, uncheck the MSP Admin box and then save, you may now delete the user.
Step 2 Send a new user invite. In Settings -> Users click the green " + " icon and enter the email address of the user you wish to invite. This will email them an invitation to create a new user account. Please bear in mind that the authentication method option is only available when the user gets the invitation email and not when you are sending the invite.
Step 3 Login using your KaseyaOne credentials
Step 4 The user will need to copy the invite link from the invitation email and open it in a new Google Chrome Incognito window to avoid cached credential interference. When they are creating their new MSP user for access to the SaaS Alerts UI they are presented with 3 options to choose from
1. Google OAuth
2. Microsoft OAuth
3. KaseyaOne
4. Email and Password
Choosing Google or Microsoft will allow you to use their MFA to access Respond
IMPORTANT: If you choose Google or Microsoft login please DO NOT select the Enable Multi-Factor Authentication option within the SaaS Alerts UI as this will cause access issues.
After selecting an authentication method the email associated with that MSP user may not change its authentication method unless the account is deleted and reinvited. To perform this task you will need to create (or use an existing) MSP Admin account. Create the new MSP Admin account (Settings, green "+" icon in the Users section and send an invite to an email account that you have access to that isn't the same as the one being changed). Once the new account is created you will need to promote it to an MSP Admin. Ensure you do not enable MFA for this temp account during this process and log in.
Once signed in with the temp admin account you will need to demote the user you wish to update the authentication method for to an MSP User (if they are an admin). Navigate to settings, click the pencil icon next to the user in question, uncheck the MSP Admin box and save.
Once this account is an MSP User it may be deleted (Trash can icon at the end of the user's row).
Now simply use the green "+" icon to send a new invitation for the user to rejoin and during the process choose the new authentication method you would like it to use going forward.
IMPORTANT: If you use Google or Microsoft login please DO NOT select the Enable Multi-Factor Authentication option as this will cause access issues.
Comments
0 comments
Please sign in to leave a comment.