In this article
The user permissions of MSP's client Organizations behave differently than a standard account's permissions. This article highlights key differences compared to a standard account's dashboard user permissions.
Site and Local Domain control are managed at the MSP Organization level
The Client Admin Site Creation toggle controls whether client Organization admins can create Sites and manage local domains. This toggle is off by default, which means regardless of the client's user permissions, client admins cannot change or create Sites or Local Domains in their account. The toggle must be enabled to give clients these permissions. This setting applies to all Organizations under the MSP. Find this setting in MSP Settings.
If clients reach out wondering why they cannot update an IP address or a Site's Filtering Policy, confirm this toggle is enabled.
Universal Lists are managed as part of Global Policies
Instead of client-level Universal Lists, MSP's manage Global Universal Lists that apply to all Organizations. Client Admins cannot view Global Universal Lists.
They're able to view but not edit Global policies, which are indicated by a globe icon in the dashboard.
Client Organizations that wish to block or allow specific domains across all their Filtering Policies should add the domains to each policy's Allow or Block List.
MSP client Organization user types
⚡️ New Permissions Added: As of 30 September 2025 client users with Admin permissions can duplicate Global Filtering Policies assigned to their organization.
| Type | Details |
| Admin |
Permissions to manage:
View-Only Permissions:
|
| Policies Only |
Permissions to edit existing:
View-only Permissions:
|
| Read Only |
View-only Permissions:
|
Comments
0 comments
Please sign in to leave a comment.