Administrator Guide
Use the Admin Panel, the administrator pages listed under Admin in Settings, to manage your tenant across the Istari Digital web app: people and access policy, agents and external applications, partner connections, compatibility, and usage reporting. Platform Administrators also manage every tenant from the Platform Admin Console.
These tasks support every stage of adoption. Install, Connect, Build, and Share link here when a procedure requires administrator access, while this guide keeps all administrator tasks in one place.
For everyday work with Systems, Resources, and jobs, see Build with no code. For infrastructure and control-plane administration, see Install.
What you will find here
- Platform Admin Console — Manage every tenant and every tenant's people (Platform Administrators).
- People & access policy — Add and manage people, manage tenants, grant administrator roles, assign tool access and classification levels, and configure control tags and infosec levels.
- Agents & integrations — Create agent keys or tokens, manage agents, register external applications and credentials, and check compatibility.
- Secure Connections — Configure governed data exchange with partner organizations and diagnose synchronization failures.
- AI — Set the prompts applied to every AI chat turn, and register the endpoints and models those chats can use.
- Usage Metrics — Download usage data for reporting and analysis.
Prerequisites
These prerequisites apply to installations with tenant management. For installations without it, see On installations without tenant management.
- You need an administrator role: Tenant Administrator in your tenant, or Platform Administrator. See Administrators for what each role covers and who can grant it.
- Only a Platform Administrator can enable and configure infosec levels; see Infosec Levels.
- If Admin does not appear in Settings, ask an administrator of your tenant to grant you a role.
- If nobody holds an administrator role yet, your IT administrator creates the first Platform Administrator.
On installations without tenant management
If Settings > Admin > Users has an Invited tab, your installation does not use tenant management. There, your IT administrator grants administrator access in your sign-in provider, and the Platform Admin Console, Tenants and Administrators pages do not apply.
Admin Panel Overview
- Click your avatar at the bottom of the sidebar, then Settings.
- Under Admin in the Settings navigation, click a section. The Admin group appears only for administrators.
You can also go to /admin, which opens the first section you can use, usually Users. Breadcrumbs on admin pages start at Settings.
A section marked in the Also requires column appears only when that feature is enabled for your deployment.
| Section | Description | Route | Also requires |
|---|---|---|---|
| Users | Add, suspend and reactivate your tenant's people; manage their administrator roles, tool access and control tags | /admin/users | — |
| Control Tags | Create, edit, and archive control tags | /admin/control-tags | — |
| Infosec Levels | Enable and configure information security classification | /admin/infosec | Infosec enabled for your deployment |
| App Integrations | Configure third-party app connections (Google Drive, Windchill, etc.) | /admin/integrations | — |
| Secure Connections | Configure inbound and outbound data channels with partner registries | /admin/secure-connections | — |
| Usage Metrics | Download usage data as CSV for a chosen date range | /admin/usage | — |
| Compatibility | Monitor server and agent API compatibility | /admin/compatibility | — |
| LLMs and AI Instructions | Register LLM endpoints and the models approved on each (LLMs tab), and edit the prompts applied to every AI chat turn (AI Instructions tab); see AI Models and AI Steering | /admin/ai | — |
Agents (create agent credentials and manage agents) live under Agents in the main app sidebar at /agents, not in the Admin group in Settings. That entry is also visible to administrators only. Legacy URLs /admin/agent, /admin/agents, /admin/agent-management, and /agent-management redirect there. See Agents.
Guide Sections
Platform Admin Console
- Platform Admin Console — manage every tenant and every tenant's people (Platform Administrators)
People & access policy
- User Management — add people one at a time or from a CSV file, suspend and reactivate them, and manage their tool access, keys and classification levels
- Tenants — create, edit, suspend and reactivate tenants, and manage their members
- Administrators — grant and revoke the Tenant Administrator and Platform Administrator roles
- Control Tags — create and manage control tags (assign tags to users in User Management)
- Infosec Levels — enable and configure security classification levels
Agents & integrations
- Agents — generate keys or tokens, view and manage agents
- App Integrations — configure third-party connections
- Platform Compatibility — server and agent version compatibility
Secure Connections
- Secure Connections — configure sending and receiving connections with partner registries
- Debugging Secure Connections — diagnose sync failures and authentication issues
AI
- AI Steering — edit the prompts applied to every AI chat turn
- AI Models — register endpoints and the models approved on each
Reporting
- Usage Metrics — download usage reports
Quick Reference: Admin Routes
| Route | Page |
|---|---|
/admin | Admin entry (opens the first section you can use, usually /admin/users) |
/admin/users | User management |
/admin/users/<id> | A person's details (tenant management only) |
/admin/control-tags | Control tag management |
/admin/infosec | Infosec level configuration |
/admin/integrations | Third-party app integrations |
/admin/usage | Usage metrics |
/admin/compatibility | Platform compatibility |
/admin/ai | LLMs and AI Instructions; the older /admin/ai-models and /admin/ai-settings redirect here |
/admin/secure-connections | Secure connection management |
/admin/secure-connections/:kind/:connectionId | Connection settings (?tab=details, rules, users, or owners) |
/admin/secure-connections/:kind/:connectionId/sync-status | Connection sync status detail |
/agents | Agent credentials and agent management (main sidebar) |
/console | Platform Admin Console entry (redirects to /console/tenants); tenant management only |
/console/tenants | Tenants |
/console/tenants/<id> | A tenant's details and members |
/console/users | Every tenant's people |
/console/users/<id> | A person's details |