Enter the following data on the General tab.
Property | Description |
---|---|
Display name |
The display name is used to display the group in the One Identity Manager tools user interface. |
Tenant |
The group's Azure Active Directory tenant. |
Alias |
Email alias for the group. |
Email address |
Group's email address |
Proxy addresses |
Other email addresses for the group. You can also add other mail connectors (for example, CCMail, MS) in addition to the standard address type (SMTP, X400). Use the following syntax to set up other proxy addresses: Address type: new email address |
Group type |
The type of group. is empty for security and distribution groups. The value is Unified for Office 365 groups and For dynamic groups, the value entered is DynamicMembership. |
Security group |
Specifies whether this group is a security group. Resource permissions are distributed through security groups. User accounts and other groups are added to security groups, which makes administration easier. |
Mail-enabled |
Specifies whether the email is enabled for the group. If this option is set for a security group, it is a mail-enabled security group. Otherwise, it is a distribution group. |
IT Shop |
Specifies whether the group can be requested through the IT Shop. If this option is set, the group can be requested by the employees through the Web Portal and distributed with a defined approval process. The group can still be assigned directly to hierarchical roles. |
Only for use in IT Shop |
Specifies whether the group can only be requested through the IT Shop. If this option is set, the group can be requested by the employees through the Web Portal and distributed with a defined approval process. Direct assignment of the group to hierarchical roles or user accounts is not permitted. |
Service item |
Service item data for requesting the group through the IT Shop. |
Risk index |
Value for evaluating the risk of assigning the group to user accounts. Set a value in the range 0 to 1. This input field is only visible if the QER | CalculateRiskIndex configuration parameter is activated. For more information about risk assessment, see the One Identity Manager Risk Assessment Administration Guide. |
Category |
Categories for group inheritance. Groups can be selectively inherited by user accounts. To do this, groups and user accounts are divided into categories. Select one or more categories from the menu. |
Description |
Text field for additional explanation. |
Read-only memberships |
Specifies whether the memberships are read-only. The memberships are regulated by the target system. Manual changes to memberships in One Identity Manager are not permitted. |
Related topics
- Azure Active Directory group inheritance based on categories
- For more information about preparing groups for requesting through the IT Shop, see the One Identity Manager IT Shop Administration Guide.