Groups can be assigned directly or indirectly to user accounts. Indirect assignment is carried out by allocating the employee and groups in company structures, like departments, cost centers, locations or business roles. If the employee has a user account in Azure Active Directory, the groups in the role are inherited by this user account.
To react quickly to special requests, you can assign groups directly to user accounts.
To assign a group directly to user accounts
Assign user accounts in Add assignments.
The view- OR -
Remove user accounts from Remove assignments.
Installed Modules: | System Roles Module |
Use this task to add a group to system roles. If you assign a system role to employees, all the employees' user accounts inherit the group.
|
NOTE: Groups with the option Only use in IT Shop can only be assigned to system roles that also have this option set. For more detailed information, see the .One Identity Manager System Roles Administration Guide |
To assign a group to system roles
Assign system roles in Add assignments.
- OR -
Remove system roles from Remove assignments.
Once a
|
NOTE: IT Shop administrators can assign |
To add a
- OR -
Select the category Entitlements | Azure Active Directory groups (role-based login).
To remove a
- OR -
Select the category Entitlements | Azure Active Directory groups (role-based login).
To remove a
- OR -
Select the category Entitlements | Azure Active Directory groups (role-based login).
This removes the
For more detailed information about request from company resources through the IT Shop, see the One Identity Manager IT Shop Administration Guide.
After you have entered the master data, you can apply different tasks to it. The task view contains different forms with which you can run the following tasks.
Overview of Azure Active Directory Groups
Adding Azure Active Directory Groups to Azure Active Directory Groups
Effectiveness of Group Memberships
Azure Active Directory Group Inheritance Based on Categories
Assigning Owners to Azure Active Directory Groups
Assigning Extended Properties to an Azure Active Directory Group
© 2023 One Identity LLC. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy