The User administrator role enables the assignee to perform the following subset of the user-oriented actions supported by the administration portal:
- Edit user profile properties.
- Manage group membership.
- View assigned content (and reset history, change status and scores).
- Manage external learning activities (add and remove).
- Allocate (and remove) awards and points.
- Add, edit and delete user notes.
- Add users (where role is unrestricted/see further details below)
The users against which actions can be performed are limited based on the user groups and/or organisational units (OUs) associated with the role assignment.
WARNING: At feature launch, a known issue exists which enables derestricted user administrators to remove in scope users from groups outside their scope when performing a bulk update. This does not enable a User administrator to modify user's who are not within their scope but does enable them to make changes beyond that expected. Additionally, derestricted user administrators can create new groups, which is beyond the scope of this role. You are advised not to derestrict the User administrator role at this stage if this is a risk to your organisation.
The User administrator role is restricted by default to managing existing users, however Global administrators can remove this restriction and enable user administrators to add users. When restrictions on User administrator accounts have been removed, user administrators can add users by using bulk import only. Account creation in the administration portal user interface is not supported for user administrators.
When a user administrator adds new users, they are required to include at least one of the groups or organisational units that scope their User Administrator role for each user; they cannot add a user to a group or organisational unit that is not within their scope. User administrators cannot add a user who does not immediately become in scope for their role.
Global administrators can choose whether to restrict the User Administrator role on the Advanced page within the Settings area of the administration portal.