- 08 Feb 2023
-
DarkLight
-
PDF
Group Administration
- Updated on 08 Feb 2023
-
DarkLight
-
PDF
Permissions are granted to Itential Cloud user accounts via membership in groups. A group is a collection of roles in which each role corresponds to a permission. When an Itential Cloud user account is added to a group, it inherits any permissions granted by the roles assigned to that group.
Administrative activities related to groups are performed via the Groups Administration page. To access the Groups page, select Groups from the sidebar of Itential Cloud Portal:
Figure 1: Groups Page in the Sidebar
Groups Table
The UI of the Groups page is largely composed of the Groups Table. The Groups Table provides a searchable and sortable view of all groups associated with your organization, from which you can:
- Create new groups.
- Edit the settings of existing groups.
- Delete groups.
The main elements of the Groups Table are referenced in Figure 2.
Label | UI Element | Function |
---|---|---|
1 | Create Group | Creates a new group. |
2 | Search Bars | Searches the corresponding table column. |
3 | Table Body | Displays groups matching any filter specified in the Search Bars. |
4 | Pagination Controls | Sets how many table rows to show per page and shows the total number of discrete pages. Use the left and right arrows to move between pages. |
Figure 2: Groups Table
Fields in the Groups Table
Each row in the Groups Table corresponds to a group, while each column provides information about that group. Each table column, or field, is referenced below.
Table Field | Description |
---|---|
Name | The name of the group. |
Path | The fully qualified path of the group. |
Members | The number of members in the group. |
Default Groups
By default, the membership groups in Itential Cloud are admins and users.
Group | Description |
---|---|
admins | Allows members to edit high-level organization information and perform administrative actions related to IAP instances, users, and groups. |
users | Allows members to launch assigned IAP instances and view information such as existing IAP instances, users, and groups. |
Creating a Group
To create a group from the Groups page:
- Click the Create Group (+) button at the top-left corner of the Groups table to open the Create New Group modal.
- Enter a name for the group into the Name field.
- Click the Create button at the bottom-left corner of the modal.
Editing a Group
To edit an existing group from the Groups page:
- Locate the desired group in the Groups Table.
- If you know the name, path, or members value of the group, you can apply it as a filter using the Search Bars.
- You can sort groups by any field in ascending or descending order by selecting the relevant column header.
- Click the row of the desired group in the Groups Table; the Group Settings window will display for that group (Figure 3).
Specific actions that can be taken from the Group Settings window are described below.
Figure 3: Group Settings
Assigning Members to a Group
To assign members to a group from the Group Settings window:
- Select the checkbox of the desired user accounts from the list displayed on the right-hand side of the window.
- If you know the username of the desired account, you can apply it as a filter using the search bar at the top of the list.
- Click the Update Members button located directly above the list.
Assigning Roles to a Group
Two collections of roles are available to be assigned to a group: Cloud API and IAP.
Role Collection | Description |
---|---|
Cloud API | Contains roles that grant permissions to functions of the Itential Cloud Portal UI and API. |
IAP | Contains roles that grant permissions to a specific instance of IAP. |
To assign roles to a group from the Group Settings window:
- Select the tab of the desired role collection in the Roles section of the window to view all roles in that collection.
- When viewing the IAP collection, you must select which instance of IAP you are assigning roles for before the collection will be displayed.
- Select the checkbox of the desired roles.
- Click the Save button at the top-left of the window.
For more information about the Itential Cloud role collections, refer to the Itential Cloud Roles page of this guide.
Deleting a Group
To delete a group from the Groups page:
- Locate the desired group in the Groups Table.
- If you know the name, path, or members value of the group, you can apply it as a filter using the Search Bars.
- You can sort groups by any field in ascending or descending order by selecting the relevant column header.
- Click the Delete
icon at the far-right of the relevant table row.