ZTrust Documentation
  • User Manual - ZTrust V3.0
    • Key Terminologies
    • Guide to Navigation
      • Clients
        • Clients List
        • Initial Access Token
        • Client Registration
      • Client Scopes
      • Realm Roles
      • Users
      • Groups
      • Sessions
      • Events
        • User events
        • Admin events
      • Realm Settings
        • General
        • Login
        • Email
        • Themes
        • Keys
        • Events
        • Localization
        • Security Defenses
        • Sessions
        • Tokens
        • Client Policies
        • User profile
        • User Registration
      • Authentication
        • Flows
        • Required Actions
        • Policies
      • Identity Providers
      • User Federation
    • Admin Manual
      • Creation of a Realm
      • Creation of a User
        • Login to Account Console
      • How to set up Password Invalidator
      • How to set up Password Policies
      • How to set up Brute Force Detection feature
      • How to enable the One-to-Many feature
      • How to set up Multi-Factor Authentication
        • Setup of ReCAPTCHA registration flow
        • Setup of ReCAPTCHA login flow
        • Setup of OTP Based Registration
        • Setup of OTP Based Login
        • Setup of QR Code Based Authentication
        • Setup of Push Notification Based Authentication
        • Setup of Biometric based Authentication
        • How to set-up 2FA Authentication
      • ZTrust Authenticator App
      • Self-Service Portal (SSP)
        • Authenticator Setup from Self-Service Portal
        • Set Your Profile Photo in Self-Servicce Portal
      • How to setup Session Invalidator feature
      • How to setup GDPR Compliant feature
      • How to set up Social Media login
      • How to setup Inactive User Tracking feature
      • How to setup Archive Inactive User feature
      • Role-Specific Attribute Based Access Control at client level
      • Self-Role Request at the Business Level
      • Self-Role Request at the Application Level
      • How to setup Delete Archived/Inactive User feature
      • Reporting Module
      • Geo Tagging and Fencing
      • Event Type
  • Release Notes
    • ZTrust V3.1.0
    • ZTrust V3.0.0
    • ZTrust V2.1.0
    • ZTrust V2.0.1
    • ZTrust V2.0.0
    • ZTrust V1.0.4
    • ZTrust V1.0.3
    • ZTrust V1.0.2
    • ZTrust V1.0.1
    • ZTrust V1.0.0
  • Frequently Asked Questions
  • User Manual - ZTrust V2.0
    • Key Terminologies
    • Guide to Navigation
      • Clients
        • Clients List
        • Initial Access Token
        • Client Registration
      • Client Scopes
      • Realm Roles
      • Users
      • Groups
      • Sessions
      • Events
        • User events
        • Admin events
      • Realm Settings
        • General
        • Login
        • Email
        • Themes
        • Keys
        • Events
        • Localization
        • Security Defenses
        • Sessions
        • Tokens
        • Client Policies
        • User profile
        • User Registration
      • Authentication
        • Flows
        • Required Actions
        • Policies
      • Identity Providers
      • User Federation
    • Admin Manual
      • Creation of a Realm
      • Creation of a User
        • Login to Account Console
      • How to set up Password Invalidator
      • How to set up Password Policies
      • How to set up Brute Force Detection feature
      • How to enable the One-to-Many feature
      • How to set up Multi-Factor Authentication
        • Setup of ReCAPTCHA registration flow
        • Setup of ReCAPTCHA login flow
        • Setup of OTP Based Registration
        • Setup of OTP Based Login
        • Setup Time-based One-Time Password (TOTP) Based Login
        • Setup of QR Code Based Authentication
        • Setup of Push Notification Based Authentication
        • Setup of Biometric based Authentication
        • How to set-up 2FA Authentication
      • How to setup Session Invalidator feature
      • How to setup GDPR Compliant feature
      • How to set up Social Media login
      • How to setup Inactive User Tracking feature
      • How to setup Archive Inactive User feature
      • How to setup Delete Archived/Inactive User feature
      • Role-Specific Attribute Based Access Control at client level
      • Reporting Module
      • Geo Tagging and Fencing
      • Event Type
  • User Manual - ZTrust V1.0
    • Guide to Navigation
      • Realm Settings
        • General
        • Login
        • Keys
        • Email
        • Themes
        • RabbitMQ Config
        • Localization
        • Cache
        • Tokens
        • Client Registration
        • Client Policies
        • Security Defenses
      • Clients
      • Client Scopes
        • Default Client Scopes
      • Roles
        • Realm Roles
        • Default Roles
      • Identity Providers
      • User Federation
      • Authentication
        • Flows
        • Bindings
        • Required Actions
        • Password Policy
        • OTP Policy
        • WebAuthn Policy
        • WebAuthn Passwordless Policy
        • CIBA Policy
      • Groups
        • Default Groups
      • Users
      • Sessions
        • Realm Sessions
        • Revocation
      • Events
        • Login Events
        • Admin Events
        • Config
      • Import
      • Export
    • Admin Manual
      • Creation of a Realm
      • Creation of a User
        • Login to Account Console
      • How to set up Password Invalidator
      • How to set up Password Policies
      • How to set up Brute Force Detection feature
      • How to enable the One-to-Many feature
      • How to set up Multi-Factor Authentication
        • Setup of ReCAPTCHA registration flow
        • Setup of ReCAPTCHA login flow
        • Setup of OTP Based Registration
        • Setup of OTP Based Login
        • Setup of QR Code Based Authentication
        • Setup of Push Notification Based Authentication
        • Setup of Biometric based Authentication
      • How to setup Session Invalidator feature
      • How to setup GDPR Compliant feature
      • How to set up Social Media login
      • How to setup Inactive User Tracking feature
      • How to setup Archive Inactive User feature
      • How to setup Delete Archived/Inactive User feature
Powered by GitBook
On this page
  1. User Manual - ZTrust V1.0
  2. Guide to Navigation

Groups

PreviousCIBA PolicyNextDefault Groups

Last updated 1 year ago

Under the Groups tab, users have the ability to create various groups to accommodate specific sets of users.

View All Groups

To view all the groups within the realm, click on View All Groups.

New

Click on the New option to generate a new group.

Choose any Name you like and form the group.

Within the Settings, the Name of the Group is visible which is a required field.

You have the ability to edit the name here and then click Save to apply those modifications.

Click on Reset to discard those modifications.

Within the Attributes section, you have the ability to define any variable you require for the entire Group.

Just provide the Key, which is the variable you want to define, and then input its corresponding Value.

Click Add to save the Key-Value pair.

On the Role Mappings tab, you have the option to allocate specific roles to individual groups.

Realm Roles

Available Roles

It lists all the Available Realm Roles that a user can be assigned to. It includes roles that are effectively designated but not explicitly assigned.

Assigned Roles

It consists of the Realm Roles that have already been assigned to the user.

Effective Roles

It encompasses all Realm Role Mappings.

Certain roles may be derived from a mapped composite role.

If you want to move any of the Available Roles to Assigned Roles, select the Role and click on Add Selected.

If you want to delete any of the Assigned Roles, select the Role and then click on Remove Selected.

Client Roles

Client roles are namespaces designated for clients, with each client having its own namespace.

These roles are managed within the Roles tab specific to each client.

You can assign the role to a particular client by selecting the preferred option from the dropdown menu.

Under the Members tab, you can see the different users present in this Group.

When you click on the Group Name, you'll notice that various options such as Edit, Cut, and Delete become active/enabled.

By clicking on Edit, you'll be directed to the following screen, where you can change the Group Name.

Click on Save to keep these alterations, and click on Reset to discard any changes made.

Within the Attributes section, you have the ability to define any variable you require for the entire Group.

Just provide the Key, which is the variable you want to define, and then input its corresponding Value.

Click Add to save the Key-Value pair.

On the Role Mappings tab, you have the option to allocate specific roles to individual groups.

Realm Roles

Available Roles

It lists all the Available Realm Roles that a user can be assigned to. It includes roles that are effectively designated but not explicitly assigned.

Assigned Roles

It consists of the Realm Roles that have already been assigned to the user.

Effective Roles

It encompasses all Realm Role Mappings.

Certain roles may be derived from a mapped composite role.

If you want to move any of the Available Roles to Assigned Roles, select the Role and click on Add Selected.

If you want to delete any of the Assigned Roles, select the Role and then click on Remove Selected.

Client Roles

Client roles are namespaces designated for clients, with each client having its own namespace.

These roles are managed within the Roles tab specific to each client.

You can assign the role to a particular client by selecting the preferred option from the dropdown menu.

Under the Members tab, you can see the different users present in this Group.

To relocate a Subgroup to another Group, click on Cut.

Then, choose the specific Group where you wish to move the Subgroup and select Paste.

The Subgroup or Group will then be moved to the desired location.

To remove the Group, simply click on Delete.