Create and manage groups
A group in IDaaS is a set of users. You can add users to groups or remove users from groups that your role allows you to manage. If your role includes permission to Manage All Groups (see Create, assign, and manage roles), you can create as many groups needed to control which applications users can access.
This section explains how to create, edit, delete groups, and configure advanced settings for the Group Attribute Type.
Create a group
- Click > Members > Groups. The Groups List page appears.
- Click . The Add Group dialog box appears.
- Enter a Group Name.
- Optional. In the Group Attribute field, enter additional attributes that are associated with the group. These attributes can be mapped into SAML assertion attributes and OIDC claims and are returned in a SAML or OIDC and OAuth response.
- Click Add. The group is added to the Groups List page.
Edit a group
- Click > Members > Groups. The Groups List page appears.
- Click the group name. The Edit Group dialog box appears.
- Edit the Group Name as required.
- Optional. In the Group Attribute field, enter additional attributes that are associated with the group. These attributes are returned in a SAML or OIDC and OAuth response.
- Click Save.
warning
You cannot change the name of a group associated with an Active Directory.
Delete a group
- Click > Members > Groups. The Groups List page appears.
- Click for the group you want to delete.
- Click Delete on the confirmation prompt.
Sort and filter groups
- Click > Members > Groups. The Groups List page appears.
- You can do the following actions:
- Click the arrow next to the Group Name column heading to sort the groups numerically or alphabetically.
- To select multiple groups, click the checkbox next the desired groups.
- To select all groups, select the checkbox next the Group Name.
- To filter groups, click to enable filtering.
- Select your filter options. You can filter by Group Name or Group Type (None, Directory, Local).
- Click Apply.
Export a group list
- Click > Members > Groups. The Groups List page appears.
- Click to export the user list to a .CSV file. The Export Table to CSV dialog box appears.
- Optional: Enter a Name for the file.
- Optional: Enter a Description for the file.
- Select the File Delimiter radio button, Comma (,) or Pipe (|).
- Select the attributes you want to include in the file.
- Click Export. The CSV file is exported to the Reports page (see Manage reports).
note
You can export a maximum of 100,000 records.
Select Advanced Settings for group attribute type
- Click > Members > Groups. The Groups List page appears.
- Scroll to the bottom of the Groups List page.
- Click Show Advanced Settings. The Group Attribute Type options appear.
- Select one of the following options:
- String. Include string content to a maximum 10,000 characters.
- OIOSAML. Supports Danish OIO SAML Web SSO Profile 3.0 for interoperation with Kombit Context Handler 2. This information can be encoded and returned in a SAML assertion defined in OIOSAML and returned to Kombit Handler 2.
- Click Save.