Skip to main content

Getting Started

This page is for someone who already has access to a running CET2 instance and wants to start using it. If you're setting up a new CET2 deployment, go to the Deployment Guide instead.

Signing in

  1. Go to your CET2 portal URL (e.g. https://portal.clefsoft.co.uk).
  2. Sign in with your Microsoft Entra ID account.
    • MSP staff sign in with their home-tenant account and, once assigned a role, can reach every onboarded customer tenant they're scoped to.
    • Customer administrators sign in with their own organisation's account. The first sign-in triggers a one-time consent prompt for the CET2 application.
  3. If you see "Your access hasn't been set up yet", you're authenticated but have no role assignment yet — ask your MSP/IT provider to grant you access (see RBAC).

Finding your way around

AreaWhat it shows
DashboardTenant-level summary: device counts, compliance state, recent activity
User searchSearch a tenant's users; jump straight to their assigned devices
DevicesFull managed-device list with compliance, encryption, and last check-in
AppsThe Intune application catalog and install-status reporting
FindingsSecurity/compliance posture checks, with failing-device drill-down
Intune dashboardRing/donut breakdowns by compliance, OS, and configuration state
AutopilotAutopilot-registered device identities
Windows UpdatesUpdate ring/policy status across the tenant
Expiry AlertsApple Push (APNs) certificate, VPP, and DEP/ABM token expiries
Access Control(Admins) manage RBAC role assignments

Taking an action

Actions (device sync, retire, wipe; user disable/enable, revoke sessions, reset access) appear as icon buttons on the relevant detail page, and only when your role grants the permission for that action.

  1. Click the action icon. A confirmation dialog opens.
  2. Enter a reason — every action requires a business justification, which is permanently recorded.
  3. For destructive actions (disable user, retire/wipe device), type the target's name to confirm.
  4. Confirm. If the action requires a fresh sign-in (step-up), you'll be redirected to re-authenticate and the action completes automatically when you return.
  5. The outcome appears as a banner, and a row is added to the target's Action history.

Next steps