Manage Groups
In the Unifyia platform, a group enables the assignment of multiple roles and policies. Essentially, creating a group signifies the role, privileges, and authentication requirements for an
organization. For instance, if an organization mandates that employees must possess identities issued
with PIV credentials, you can create a group named Employee ID with PIV and assign the role as user.
The groups option in the platform allows you to do the following:
- Add a group and assign roles
- Search members and add members to the group
- Search a group
- View the number of users assigned to the group
- Edit the name of a group
- Delete a group
Ensure that you are logged in to the Unifyia platform with your admin credentials to perform the actions described in the succeeding sections.
Add Group
- Navigate to Configurations > Groups.
- On the List of Groups page, select Add Group. You will notice two tabs - General Information and Assign Roles.
- Under the General Information tab, provide a name for the group and a brief description about the group.
- Select Next. The Assign Roles page is displayed.
- Under the Assign Roles tab, select the roles to assign to the group. Depending on your
organization's policy, you can assign either single or multiple roles to each group. For example:
- Under the Assign Roles tab, select the roles to assign to the group. Depending on your
organization's policy, you can assign either single or multiple roles to each group. For
example:
- If you want users of a group to have a user role, select only the User role.
- If you want members of a group to hold dual roles, such as User and Sponsor, assign both
roles to the group. Users will inherit the permissions and access privileges associated
with each role. However, during implementation, the higher-level role takes precedence.
List of Roles
The following are the available roles that can be assigned to a group.
| Role |
Description |
|
Administrator
|
Can manage all aspects of onboarding of other privileged users, configurations,
integrations, access control, and monitoring. Can create users and assign all
types of
roles, issue
identities, and manage the allowed lifecycle actions of the issued identities.
|
|
Sponsor
|
Can sponsor new users
|
|
Registrar
|
Can enroll/register sponsored users
|
|
Adjudicator
|
Can review user enrollment details and decide whether to approve or deny
|
|
Security Officer
|
Can review user enrollment details and decide whether to approve or deny
|
|
Identity Issuer
|
Can issue identities to users
|
|
Helpdesk Operator
|
Manage lifecycle activities of the issued identities and user-related
incidents
|
|
User
|
An applicant who can get approved credentials issued, self-issue additional
identities
as per organization's policies, and can self manage
them.
|
- Select + Save. The group is created successfully. You are prompted to add
members to the group. Select Yes. The Assign Members tab is displayed.
- Under the Assign Members tab, search for the required members. Select them and choose
Assign Users to Group to add them to the group. Users assigned to a group automatically
inherit the roles, permissions, and access privileges defined for that group. To unassign
members, select them and choose Remove Members.
- Select Save. The members are successfully assigned to the group.
- On the List of Groups page, you will notice the groups added and the count of members
assigned to the group.
Search Group
- Navigate to Configurations > Groups.
- In the search box, type the name of the group. At least two characters are required.
- The group is displayed.
Edit Group
- Navigate to Configurations > Groups.
- For the group that you want to edit, select the Pencil icon.
- Under the General Information tab, change the name of the group as required.
- Under the Assign Roles tab, if required, add or remove roles for the selected group.
- Select Update to save the changes.
Delete Group
- Navigate to Configurations > Groups.
- For the group that you want to delete, select the Bin icon. A warning pop-up appears.
- Select Yes to delete or No to exit the process.