Settings · Platform / Account

Sub-Users: one account, restricted access.

izgate manages sub-user permissions with the same model as the izhost.com account panel. You grant your team access from your own İzHost account using an 8-key permission catalog; each key automatically narrows the menu and page access in the izgate panel.

  • A shared 8-key permission catalog (same as izhost.com)
  • Permissions combine (OR); the owner always has full access
  • Login/SSO with your İzHost account, or your own email/password
Managed at
izgate.com My Account
Number of keys
8
Combination rule
OR (multiple keys together)
Full access
full_access only
License + account
full_access only
Login
İzHost SSO or email/password
Where is it managed?

Two places, one permission model

The izgate panel's own "Users" page is not ready yet (it shows as "Coming Soon" in the panel). Adding, editing, and assigning permissions to sub-users is handled from two places:

  1. My Account › Sub-Users on izgate.com: the account owner adds, edits, deletes, and activates/deactivates sub-users here, and chooses which permission keys are granted for the izgate service.
  2. The izgate panel, Platform / Account (the cloud account page): a sub-user who signs in to the panel sees a menu narrowed to the permissions they've been given; account details and company selection are also found here.

This means izgate hasn't invented its own separate user-management screen — it follows, exactly, the sub-user model that İzHost uses in common across all of its products.

Permission catalog

8 keys, and what each one opens

Each key in this catalog, shared with izhost.com, unlocks specific menu items and page access in the izgate panel. A sub-user can be given more than one key; permissions combine (OR logic) — access opened by one key is never restricted by another.

Key What it opens
full_accessFull access; every page in the panel, including License and account management, opens only with this key. The account owner always has it.
view_onlyRead-only access.
logsAccess to Live Logs.
archiveAccess to the Archive page.
devicesAccess to the Devices page.
manageAccess to Wi-Fi Management (Guest Wi-Fi, Office Wi-Fi, Sessions).
guest_deskGuest Desk: opens only the Pending Approvals, Voucher Codes, and Sessions pages.
settingsAccess to the Settings section.
How does it work?

One account model, restricted access

The owner always has full access

The account owner always operates with full_access; the License page and account/membership management open only with this permission and are never delegated to sub-users.

Permissions combine

When a sub-user is given both logs and manage, the panel menu shows both the Live Logs and Wi-Fi Management sections; permissions are additive, not restrictive (OR).

İzHost login and SSO

Panel login goes through your İzHost account: email/password, OTP if needed, and company selection if you have more than one; or a one-click SSO from izgate.com/izhost.com (/sso?token=). A sub-user signs in with the email and password created for them in İzHost.

How does it work?

Add a sub-user in three steps

1

Go to My Account

Sign in with your izgate.com account and go to My Account › Sub-Users.

2

Add the user

Create the sub-user by entering a name, email, and choosing the permission keys for the izgate service (e.g., logs, devices).

3

Sign in to the panel

The sub-user signs in to the izgate panel via /giris, either with their own email/password or via İzHost SSO; the menu automatically narrows to only the granted permissions.

Good to know

Limits, honestly

The panel's own "Users" page is not ready yet (it appears as a placeholder in the menu); sub-user management is handled today through My Account › Sub-Users on izgate.com.
License management and account/membership management open only with full_access; none of the other seven keys grant access to these two areas.
In an on-premises (IzGate License) deployment, login is local; an İzHost account is optional and there is only a single (default) tenant — in this deployment type the sub-user permission catalog cannot be used until an İzHost account is connected.
Frequently asked questions

About sub-users

Where do I add sub-users?

From My Account › Sub-Users on izgate.com; the izgate panel's own Users page is not ready yet.

Can I give a sub-user more than one permission?

Yes, permissions combine (OR logic); for example, a user given logs + devices gets access to both Live Logs and Devices.

What does the guest_desk permission unlock?

Only Guest Desk functions: it opens the Pending Approvals, Voucher Codes, and Sessions pages; it grants no access to other pages.

Can a sub-user see the license?

No. The License page and account/membership management are open only to the account owner, who holds full_access.

How does a sub-user log in to the panel?

With their own email and password via /giris, or with a one-time SSO link from izgate.com/izhost.com; if they have access to more than one company, they choose one during login.

See all questions

Making your network Law No. 5651 compliant is a one-day job.

Configure izgate Cloud based on your number of firewall devices and storage needs; no setup, get started in minutes. Call us with any questions.