beautypg.com

Google Message Security for Google Apps Administration Guide User Manual

Page 89

background image

Administrators

89

A peer administrator can modify and delete another administrator’s privileges, if it
is assigned to the same organization, by clicking Delete on the Authorization List
page. This does not remove the impacted administrator as a user. It removes the
administrator’s authorization record for this organization. If this is the impacted
administrator’s only authorization record, this user is no longer an administrator
and is not allowed to log into the Administration Console. The purpose of this
functionality is to provide a quick way to remove access to the Administration
Console in special circumstances.

This example illustrates how insertion of authorization records in sub-
organizations impacts the administrative control that is available from that point
down in the hierarchy. The example shows one administrator with four different
authorization records that narrow, expand, and block administrator access.

1.

The administrator has an authorization record assigned in the New York
organization. This record includes privileges to read (or view) and modify user
settings.

2.

This authority is inherited to the Customer Service organization. The
administrator can view and modify user settings in this organization.