Restrict technician access to specific device groups in HexnodeSolved

Participant
Discussion
3 days ago Sep 11, 2026

We manage devices across multiple locations and want each regional support team to see and troubleshoot only the devices assigned to their location. Is there a way in Hexnode to restrict technician access by device group so technicians cannot view devices from other locations? Looking for the recommended RBAC or scope-based setup for this.

Replies (1)

Marked SolutionPending Review
Hexnode Expert
43 minutes ago Sep 14, 2026
Marked SolutionPending Review

Yes. Hexnode supports this using Custom Technician Roles together with technician scope assignment.

A recommended setup would be:

1. Create device groups for each location

– Use static device groups if membership is managed manually.

– Use dynamic device groups if devices should be added automatically based on matching criteria.

2. Create a custom technician role

– Go to Admin > Technicians and Roles > Roles.

– Click Add Role.

– Select the permissions the support team should have, such as dashboard access, remote actions, remote view/control, or device management permissions.

3. Assign the role with a limited scope

– Go to Admin > Technicians and Roles.

– Add or edit the technician.

– Under the Role section, select Assign Role.

– Choose the custom role.

– Click Define Scope next to the role.

– Select only the device group for that technician’s location.

Once configured, the technician’s access is limited to the devices included in the assigned scope. They will not be able to view or manage devices outside the selected device group.

Note: Custom roles are available in the Ultimate and Ultra plans.

Regards,
Mary Romero

Save