Admin Management

INKY's Admin List lets Super Admins control who can access and modify your INKY environment. Add admins individually by email or assign roles to entire groups.

Written By Matt Sywulak

Last updated 8 days ago

Found at: Admin Management - INKY

INKY's Admin List feature allows for easy admin management for your INKY team. As a Super Administrator, it allows for complete control and oversight of all of your INKY team admins.

Roles

Role

Access

Can Do

Viewer

Read-only

View all settings, no changes

Analyst

Basic

View settings, modify allowlist/blocklist

Policy Admin

Policy control

Modify policies, perform remediation

Super Admin

Full control

Everything above plus manage admins

Note: Only Super Admins can manage Admins. To request admin elevation, contact support@inky.com.

Add Admin by Email

Use this method for individual admins. The email address can be from any domain.

  1. Navigate to Admin Center

  2. In the left navigation menu, select Admin Management β€” Admin Management - INKY

  3. On the Admin Management page, click Add New Admin

    [Screenshot: Admin Management Email tab with Add New Admin button β€” updated table layout with search and filtering]

  4. Enter the admin's email address

  5. Select their role

  6. Click Add

The user can log in immediately with their existing credentials.

You can also click any row in the Email list to open the edit modal and change an admin's role or remove them.

Add Admins by Directory Groups

Using Domain and Directory API access, INKY can pull directory groups from M365 and Google Workspace and assign appropriate roles to their members.

Prerequisites

Enable Domain and Directory API Access first: API Access - INKY

Steps

  1. Navigate to Admin Center

  2. In the left navigation menu, select Admin Management β€” Admin Management - INKY

  3. Select Admins by Active Directory groups (or Admins by Tenant groups for Google)

    [Screenshot: AD Groups tab with updated table layout, search, and role filtering]

  4. Click Add New Group

  5. In the Tenant Group dropdown, select your group

  6. Select a Primary role for the group members

  7. Click Add

You can also click any row in the AD Groups list to open the edit modal directly.

Key behavior: If a user belongs to multiple groups with different roles, they receive the highest-level permissions.

Custom Groups

If your group doesn't appear in the Tenant Group dropdown, select Custom Group and manually enter the IDs:

  • Tenant ID β€” Unique identifier for your tenant

    • For M365: Your EntraID tenant ID (found in EntraID β†’ Entra ID β†’ Overview).

    • For Google: Your INKY team ID.

  • Group ID β€” The unique identifier of the group from your directory.

    • For M365: Found in EntraId Portal β†’ Groups β†’ select your group β†’ Object ID.

    • For Google: Found in Google Admin Console β†’ Groups β†’ select your group β†’ Group ID.

Admin by KaseyaOne Role

The Admin by KaseyaOne Role tab in Settings > Admin Management lets you manage role mappings between KaseyaOne and INKY directly from the dashboard. All four KaseyaOne roles are always displayed, even if no INKY role mapping exists yet.

KaseyaOne Role Mappings

KaseyaOne Role

Default INKY Role

Master

No Access (assign as needed)

Billing

No Access (assign as needed)

User

No Access (assign as needed)

CoManagedUser

No Access (assign as needed)

Assign or Change a Role Mapping

  1. Navigate to Admin Center

  2. In the left navigation menu, select Admin Management

  3. Select the Admin by KaseyaOne Role tab

  4. Find the KaseyaOne role you want to map

  5. Use the INKY Role dropdown to select the desired role (Viewer, Analyst, Policy Admin, or Super Admin)

  6. The change saves automatically β€” you'll see a success confirmation

Remove a Role Mapping

To remove a KaseyaOne-to-INKY role mapping, select No Access from the INKY Role dropdown. This removes the mapping entirely β€” users with only that KaseyaOne role will no longer have INKY dashboard access through that role.

Key behavior: Role mapping changes apply to all teams under the current organization. Users who belong to multiple KaseyaOne roles receive the highest-level INKY permissions.

Organization-Level Groups

For MSPs managing multiple teams, you can assign groups at the organization level to grant access across all child teams.

Organizations are denoted with the Skyscraper icon in the team selector. When you have an organization selected, group assignments affect all child teamsβ€”including which users can manage each child team.

Groups available at the organization level are inherited from the base team used to create the organization. This allows MSPs to assign directory groups to specific INKY roles, giving members access at the appropriate level to all child teams.

How to identify your view:

  • Base team view β€” No skyscraper icon next to the team name. You'll see all settings options.

  • Organization view β€” Skyscraper icon visible next to the team name. Fewer settings options, but group assignments here apply to all child teams.

If you don't have a Microsoft or Google account, please open a ticket with support@inky.com for assistance.