Manage data imports with other admins

You can share management of your data imports by assigning specific users an import admin custom role and the Google Workspace Migrate Drive Admin role. Users assigned these roles can create and run imports with the data import tool.

Notes:

  • Resellers can't import data for their customer accounts.
  • To allow users assigned these roles to run and manage imports, a super admin has to first create and authorize the connection.

Migration privileges you can assign

When assigning migration privileges to create the import admin custom role, these prerequisite system privileges must also be assigned to the user:

  • Domain Management—Required to verify the target domain.
  • Users and then Read—Required to view and select users for data imports.
  • Audit & Investigation and then View and then Data migration—Required for viewing audit logs.
  • Services and then Calendar and then All Settings and then Buildings and Resources and then Manage Resources and then View Resources—Required for viewing shared resource details.
  • Services and then Calendar and then Manage Calendars—Required to view and create calendar events for data imports.

After the system privileges are assigned, you can assign any combination of the following migration privileges:

  • Full access to all Migration features and then Execute Migration and then Modify migration and then View migration—Role has read-only access to migration components and can monitor progress.
  • Full access to all Migration features and then Execute Migration and then Modify migration—Role can create import batches, perform setup and import configuration, review reports, and start, pause, and stop imports.

    Note: While the Modify privilege lets this role create migration batches, only super admins can create connections inside a batch.

  • Full access to all Migration features—Role has full administrative control. Admin can delete connections, comma-separated values (CSV) mapping files that include the users and groups to import, and identity maps.

Let users run data imports

To assign the admin privileges needed to run a data import:

  1. Create a custom administrator role that includes the prerequisite system privileges (described earlier on this page) that you want to give the user.

  2. Assign the newly created custom administrator role and the Google Workspace Migrate Drive Admin system role to one or more users.

  3. Save your results.

Verify admin privileges

To complete these steps, you need the appropriate User management privilege. Without the correct privilege, you won't see all the controls needed to complete these steps. You must be signed in as a super administrator for this task.

After assigning a role, verify the user's privileges.

  1. In the Google Admin console, go to Menu and then Directory and then Users.

    Requires having the appropriate User management privilege. Without the correct privilege, you won't see all the controls needed to complete these steps.

  2. To open the account page, click the user's name.
  3. At the bottom of the user's account page, click Show more.
  4. Click Admin roles and privileges.

Review the privileges to ensure you've selected the necessary system prerequisite and migration privileges.