-
Suggestion
-
Resolution: Unresolved
-
5
-
Description
Organizations regularly risk the below scenarios.
- A single person may be assigned as Org admin, and he may not be available in the Organization. So nobody will be able to do the Org admin activities.
- If SSO is enabled, and if there are any configuration issues, no Org admins will be able to login and disable configuration if all of them are from the verified SSO domain.
Suggested Resolutions
- Provide a warning to the Org admin if the Organization has one of the above scenarios. It can be via a warning popup or email message so that this situation is avoided.
- In addition in the IDP configuration/modification screens, addition of secondary Org admins( from non verified domains) should be enforced.
- relates to
-
ACCESS-1836 Allow org admins to bypass SAML SSO authentication
- Gathering Interest
-
AX-409 Provide an option to add a second Org admin during creation of new site or Organization
- Gathering Interest
-
AX-1444 Provide approval or workflow configuration option for critical Org admin use cases
- Gathering Interest
(2 mentioned in)