How to Create Groups
Prerequisites
For an overview of the Identities feature, refer to the section: Identity Management.
Configuration
Add a Cyolo Group
- Log in to the Admin Portal.
- Navigate to Identities > Groups.
- Click New in the top right corner (or click the dropdown and choose Cyolo Group).
- In the New window, enter the following information in each field:
- Name – Enter a name for this group.
- Identities – select users or groups (nested groups).
- Condition Profile - users will be able to log in only if they meet all the conditions.
- Click Save.
Add a Dynamic Group
You must configure at least one external IdP on Integrations > Identity Providers before creating dynamic groups. Refer to the section on integrating external IdP to the Cyolo platform: Configuring LDAP Integration.
- Click the drop-down alongside the Add button and select Dynamic Group.
- Choose identity provider - The identity providers integrated with the Cyolo platform will be displayed at the top. Select the IdP for this configuration.
- Choose group resolving method – Choose the method to locate the group:
- Attribute – Enter the attribute name of the group in the IdP. For example, memberOf.
- Free Query - Provide an XPath query to match the values you expect from the given group.
- Click the Import Groups button.
- In the Import LDAP Groups window, enter the name of a group in the search box.
- Select the group from the groups displayed.
- Click Confirm.
- Define groups by their expected value – Enter the name of the group to be imported and its identification value within the external IdP. For example, in the case of LDAP, it is DN.
- Group name - Set a local name for this dynamic group.
- Expected Value - CN=Domain Admins, CN=Users, DC=example, DC=com
- Click Add.
● Click Add in the top right corner.
Updated 4 months ago
Did this page help you?