Auth0 SAML SSO: Can we configure a user to be part of multiple groups?
- 04-02-2024
Hello! I'm not a Sisense rep, but have been working with the platform for the last 4 years or so. I can confirm that SSO accounts can be assigned to multiple user groups (Team A, Team B, etc.), but I am not aware of a way to set multiple roles (Viewer, Designer, Data Designer, Data Admin, Admin) for a single user/account.
However, even a user who has Designer role will not automatically have permission to design on every Dashboard. The design permissions for individual dashboards are still delegated by higher roles (admin, data admin, and dashboard owner). The same is true for Data Model design permissions; even a Data Designer cannot manipulate a given Data Model unless they are specifically granted permissions by a higher role account. So, effectively, if you limit your power users with Designer and Data Designer permissions, they will operate as a Viewer of many things and a Designer of only those things they are granted explicit permission to.
Keep in mind, Data Admin and Admin roles have additional ability to explore and grant themselves permissions to things that were not previously explicitly granted to them, hence the "admin" designation.
Hope this helps!