The role management option lets you choose if you want to manage the roles from the Identity Provider (e.g. OneLogin, Azure AD, ADFS, Okta, Google, SAML IdP) or keep the role management in CHEQROOM.
In some cases it’s useful to keep the role management in CHEQROOM itself so there’s no need to contact your company's IT Administrator to change the role of specific user(s).
Option 1: Identity Provider (e.g. OneLogin, Azure AD, ADFS, Okta, Google, SAML IdP)
When roles are managed through the Identity Provider than the following logic is used:
New and existing users
The role of user will be updated on every login through SSO.
Please check the list below to configure roles for an specific Identity Provider:
Option 2: CHEQROOM
When roles are managed through CHEQROOM than the following logic is used:
New users first need to login through SSO and then you will be able to manage their roles.
Newly created users will be assigned the selected default role when they log in for the first time through SSO.
You can immediatelly manage their roles in CHEQROOM
Remark: If you used the Identity Provider option previously the role claim will always be ignored
More information can be found in the How can I modify the user role of any existing user? help article