Enterprise Console setup with multiple environments, and multiple Cloud products including Cloud SWG, ZTNA, SEP Cloud, CASB.
One of the Enterprise console administrators logged in and identified a number of super admins within the environments.
One concern is that these super admin roles could give themselves access to other resources e.g. become Cloud SWG administrators.
Is this possible and is super admin role actually required?
ENterprise Console admin roles.
CASB, Cloud SWG and SEP Cloud products enabled within the Enterprise Console environments.
The 'Super Admins' role cannot assign itself as an administrator of other products with the Enterprise Console environments.
The 'Super Admins' role is specific to the Endpoint Security though, and the CMP SEC docs does state that this role has a number of permissions for SEP only, and not other products.
This is different to the 'Product Super Admin' which provides higher level of permissions and can be used to across environments/products.