Enterprise Admin
Enterprise Admin Quick Start Guide
Last updated
Was this helpful?
Enterprise Admin Quick Start Guide
Last updated
Was this helpful?
This Enterprise Admin Quick Start Guide covers the steps to:
Part 1: Enable Team Access to PixieBrix
Part 2: Provision PixieBrix at scale
Visit:
On the login screen, authenticate with your preferred provider
Microsoft (including Azure Active Directory)
Email — sends a login link to your email
In the Admin Console, click Create Team and provide a team name
Invite your team members. See Roles for role-based permissions
Select Settings in the left side nav
Configure the Team scope and default role:
Team scope: a unique account alias to namespace your team’s mods and bricks. The scope cannot be changed once your team has created a mod
Default role: the default role for users automatically provisioned to your team
Ensure your team members can access PixieBrix using your preferred authentication method:
Google/Microsoft (OpenID)
Account Login Emails (aka Magic Links)
SAML/SSO
If running a pilot/POC, we recommend starting with Google, Microsoft, or Email login to get your team up and running quickly.
Login with Microsoft: Enabling Login with Microsoft
Follow the instructions to ensure the deliverability of system emails: Network/Email Firewall Configuration
Allowlist the PixieBrix system email IP addresses
Allowlist the PixieBrix email domain
Follow the steps at: Setting Up SAML/SSO
Allowlist the required URLs: Network/Email Firewall Configuration
Allowlist the PixieBrix Chrome Browser Extension: mpjjildhmpddojocokjkgmlkkkfjnepo
. See Browser Extension Installation Policy
Follow the instructions at: Browser Extension Installation and Configuration
Force-install the browser extension
Configure the Browser Extension Policy
Follow the steps in the Groups documentation
Click the Groups menu item in the left side nav
Create a Group
Add group members in one of the following ways:
Upload a CSV in the Admin Console
Use the Developer API to update group membership regularly, or
Follow the steps at: Setting Up SAML/SSO
Open the Admin Console:
Login with Google:
Email to enable automatic user provisioning for your email domain(s)
Visit the
Contact to set up automatic group enrollment by email domain