The Users menù available in your dashboard, allows you to manage you users. You can create additional users that will be able to login and manage campaigns.
Next to each user, on the far right and depending on the permissions, there are three icons to edit, delete and impersonate the entry. In a multi tenant environment you can filter out users by clicking on the Tenant button.
You have two options for creating users, either create permanent users in the platform (Local users) or configure the platform to allow access to the desired Microsoft users; in the latter case, users will be redirected to Microsoft 365 to log in, and will then land on PhishBrain.
Local Users
User Roles
You have two different roles associated to a user:
- User role
- Tenant Administrator role
The Tenant Administrator role has an elevated privilege and can create additional users and tenants (if your license is a multi tenant one) and authorize new domains.
The User role can fully operate with all functionalities but can't create additional users or tenants or authorize new domains as target.
Add a New User
To add a new user click on the "New User" button.
You must fill the above form. All fields are self explanatory. The email address field will be the username and the domain part must be one of the authorized ones under section Domains.
If you want to grant the Tenant Administrator privilege please check the related option.
Impersonate user
If your user has administrator privilege, you can impersonate other users belonging your tenant by clicking Switch user action of the user you want to impersonate.
Microsoft 365
Please note: at the moment users coming from Microsoft 365 configuration will have just User role and while they can just see their profile and License sections they can not change them. Furthermore, their timezone is the tenant one and they can not modify. Since these users does not exists in PhishBrain, they can not be impersonated.
In the Users menu available in your dashboard, clicking Microsoft 365 button you will go on the list of Microsoft 365 configuration.
In this section it's possible to create, edit or delete a setup the users intended for the PhishBrain's login.
Add/Edit Microsoft 365 configuration
The setup it's like the Office 365 lists of addresses
| Name | A name for your configuration |
| Domain | This need to be the domain of your users. I.e: your users are name.surname@some.domain.com, you have to put some.domain.com; if you have multiple domain you have to create multiple Microsoft 365 configurations in Phishbrain |
| 365 Tenant Name | This is the tenant name of your Office/ Microsoft 365/ Azure, if your admin account is admin@testcompany.onmicrosoft.com, your tenant will more likely just be testcompany.onmicrosoft.com |
| Client ID | Enter the Application Client ID you created in Azure |
| Client Secret | Enter the Client Secret generate by Azure |
| Filter | Optional filter used when fetching users, check Microsoft Graph API syntax |
| Group Filter | As an easier alternative if you are looking to filter out a group of users, simply enter here the Office 365 Group ID you want to filter. |
If you want to check the user list corresponding to the configuration you just filled you can click Check users button; when you finished click Save.
In the previous picture on top part you can see a text with an URL (red outlined); the text in the red rectangle is the url you need to setup as redirect URL in Azure