icon-unified.svg
Experience Center

Managing Entitlements

Entitlements refer to the type of access privileges and permissions that are assigned to ZIdentity users and user groups. ZIdentity supports Administrative and Service entitlements.

Administrative

The Administrative entitlements are used to assign and manage ZIdentity users and user group's administrative access to a Zscaler service (e.g., Internet & SaaS, Private Applications, etc.) with a specific role that is created in the Admin Portal.

To provide users or user groups administrative access and assign a role:

  1. Add roles in the Admin Portal.

    The roles of the respective services are automatically synced into the ZIdentity database at regular intervals. To ensure that your ZIdentity database is up to date, you can perform a manual sync from the View Roles page.

  2. Add users and user groups in the ZIdentity.
  3. Go to Administration > Admin Management > Role Based Access Control > Administrative Entitlements.
  4. On the Administrative Entitlements page, select the service for which you want to assign users or user groups with admin roles.

  5. Assign users or user groups with admin roles to the service.

  6. (Optional) View the list of assigned users and user groups as service admins.

Service

The Service entitlements are used for assigning ZIdentity users and user groups to a Zscaler service (e.g., Internet & SaaS, Private Applications, etc.).

To assign users or user groups to a Zscaler service:

  1. Add users and user groups in the ZIdentity.
  2. Go to Administration > Entitlements > End User Entitlements.

  3. On the Service Entitlements page, select the service for which you want to assign users or user groups.
  4. Assign users or user groups to the service.

  5. (Optional) View the list of users and user groups assigned to the service.
Related Articles
Assigning Entitlements to UsersAbout Administrative EntitlementsAbout Service EntitlementsManaging EntitlementsManaging Device Groups