̽»¨´óÉñ saves you time by letting you create groups of users, devices, and policies. Performing group-based assignments to resources is efficient and helps you manage a large number of devices or users. You can connect the user to any of the resources connected to your ̽»¨´óÉñ org. You can connect the user to any of the resources connected to ̽»¨´óÉñ from a device to applications, networks, etc. If the user is created in a Staged user state, they will not gain access to their assigned resources until they are activated. See Managing User States for specific information about when a user is provisioned.
̽»¨´óÉñ offers three types of groups:
- User groups - Grant users access to resources. Connect the resources you want users to be able to access (applications, LDAP resources, networks, and more). See Getting Started: User Groups.
- To get started with user group membership automation, see Configure Dynamic User Groups.
- Device groups - Group your devices for policy enforcement and user account provisioning at scale. Connect the user groups that will get bulk access and assign device policies all at once. See Create a Device Group and Assign a Device Group or Policy Group.
- To get started with device group membership automation, see Configure Dynamic Device Groups.
- Policy groups - Control and protect devices. Add multiple policies to a policy group, and apply the policy group to a device group. See Create a Policy to learn how to create a policy or policy group.