Skip to content

Peer Roles

Use the Peer Roles area while administering a customer account in MSPControl.

The Peer Roles page defines the permission model for all Peer accounts in MSPControl. Peer Roles determine what each peer can see and do in the customer portal. They are fully customizable — administrators can create any number of roles and specify access rights to each module using View, Edit, Create, and Delete permissions.

Peer Roles

Open Peer Roles from the main customer menu to see a list of all existing roles. The page shows each role’s name, how many peers use it, and quick management controls.

  • + Create Peer Role — opens the role creation form where you define a new permission set.
  • Column Visibility — allows hiding or showing specific columns in the table.

 

  • Name — the role name as it appears in the Peers list when assigned to a user.
  • Users Count — number of peers currently using this role.
  • Copy — allows duplicating an existing role as a template for a new one.

 

When you click + Create Peer Role, the system opens the New Peer Role screen. This page allows you to build a custom permission profile by enabling or disabling specific access rights for dozens of system areas.

Creating a New Peer Role
Creating a New Peer Role

Enter a clear and descriptive Name for the role (for example, Custom Admin, Billing Viewer, or Device Technician). This name will later appear in the role dropdown when creating or editing peer accounts.

Each section of the page represents a functional area of MSPControl. Within every area, you can grant up to four permission types per feature:

  • View — allows the peer to open the page or view data without making changes.
  • Edit — allows modifying existing items.
  • Create — allows adding new entries.
  • Delete — allows removing entries.

  Every section includes Select All buttons at the top of each column, letting you quickly grant full access or restrict it entirely. Permissions are grouped logically by modules and functions.

Controls administrative functions such as:

  • Customers
  • Hosting Plans
  • Hosting Add-Ons
  • Peers
  • Peer Invitations

 

Defines access to account-level operations and management menus, including:

  • Subscriptions
  • Hosting Spaces
  • Space Statistics
  • Space Add-Ons
  • Peers
  • Peer Roles
  • Customer Approvals
  • Scheduled / Running Tasks
  • Email Routes
  • Audit Log
  • Two-Factor Authentication
  • Space Home operations (Backup, Delete, Import, Restore)
  • User Account Management (Change Password, Delete Account, User Account Details)
  • Account Suspension, Notes

 

Grants access to VirtuBot configuration and automation features, including:

  • Notification Groups
  • Peer Functions (e.g., Reinvite Peer)

 

Controls infrastructure and global settings:

  • Virtual Servers, RDS Servers, Devices, Intune Templates, Storage Spaces
  • VM Templates, IP Addresses, Virtual Networks
  • System Settings, Policies, Licensing, Security Improvements
  • Mail Templates, Phone Numbers, Scheduling Groups, Update Dashboard
  • Admin Relationships, Dashboards, Scheduling Invitations

 

Allows managing data visualization dashboards and their widgets:

  • Disk Space, Bandwidth, Azure, Risky Users, Veeam, Cloud Folders, Receivables
  • Widgets such as Tickets, SLA, Employees, SmileBack CSAT Score, Top Customers, etc.

 

Provides advanced override permissions on space-level resources:

  • Override quotas on Space level
  • Add/Edit Addons on Space level

 

Controls visibility and management of per-space resources:

  • Domains
  • FTP Accounts
  • File Manager
  • Documentation assets (Documents, Photos, Notes, Passwords, Certificates)

 

Gives granular access to MSPControl’s internal document repository and secrets manager:

  • Assets, Deleted Assets, Documents, Photos, Notes, Passwords, Certificates
  • Activity Logs (Photo Gallery Log, Certificate Logs, Note Logs, Password Logs)
  • Privileged Access and History
  • Visibility controls such as “Allow showing passwords in Certificates” or “Allow showing MFA codes”.

 

Manages website hosting permissions:

  • Websites, IP Addresses, Shared SSL Folders
  • Advanced Web Statistics, Domain Registrar, System Hard Quota

 

Gives control over mail hosting:

  • Accounts, Aliases, Groups, Lists, Domains

 

Controls SQL and MySQL database access:

 

Defines rights over Hyper-V environments:

  • VPS spaces, External / Management / Private Networks
  • Virtual Networks, Audit Log

 

Controls all hosted organization management:

  • User Binding, Active Users, Deleted Users, Groups
  • Password Policy, Federation, ADSync Users, Locations, Domains
  • General Settings, Organization Statistics, Send Users Report

 

Manages Azure-related policies and dashboards:

  • Azure Settings, Security, Dashboard, Alert Templates
  • Guest Users, Subscriptions, Microsoft 365 Groups, Azure Domain Service

 

Controls Office 365 monitoring and service health:

  • Subscription Dashboard, OneDrive Storage Usage, Service Health

 

Gives access to Exchange-related features:

  • Mailboxes, Contacts, Distribution Lists, Transport Rules, Retention Policy
  • Signatures, Disclaimers, Journaling, Storage Usage

 

  • SharePoint Sites and Storage Usage

 

  • Teams Users and User Plans

 

  • Shared / Personal Folders, Dashboard, Drive Maps

 

Hosted Organization – Remote Desktop Services
Section titled “Hosted Organization – Remote Desktop Services”
  • RDS Collections and RDS Servers

 

Controls RMM and device management functionality:

  • Devices, Device Settings, Agentless Intune Policies, Device Map
  • Agentless Devices, Device Apps, Azure Monitor
  • Device Functions such as Reboot, Firewall Access, Repair, ScreenConnect, Send Logs, and Windows Updates.

 

  • Veeam Backups and Settings, Azure Backups and Settings

 

Controls all subscription and billing-related actions:

  • Manage Credit Account, Adjust Balance, Make Payments, Process Refunds
  • Cancel / Reactivate Subscriptions, Change Terms, Offline Payments

 

  • View / Edit Zones, Manage SOA Records

 

  • Company ID, Tickets Integration, and other sync options

 

  • Users, Policy Options, ConnectWise Tickets

 

  • Time tracking actions (Check In/Out, Manual Time Entry, PTO Request, Lock/Unlock Timesheet)

 

  • WebDav file operations

 

  • Create roles that match your operational model (for example, Customer Viewer, Billing Manager, Technician).
  • Do not reuse a single “Admin” role for all users — split it into smaller, function-specific roles.
  • Always test new roles using a sample peer before assigning them broadly.
  • Regularly review role definitions to remove unused modules and tighten access.
  • Keep documentation of each custom role’s purpose for audit and compliance clarity.