Map Groups

This topic describes how to perform group mapping.

Before you begin

Log in to Configuration Hub as an administrator.

About this task

You can map any of the following to a Proficy Authentication group. The users belonging to these groups gain access to Proficy Authentication, and become a member of the target group.
  • UAA groups
  • LDAP
  • SAML groups

Procedure

  1. Go to Proficy Authentication > Security > Groups.
    The existing list of Proficy Authentication groups appear.
  2. Double-click and open the group you want to map to UAA/LDAP/SAML groups.
  3. Select the Mapping tab.
  4. Map UAA groups.
    1. From the Identity Provider drop down list, select the UAA record.
      The groups from the UAA record appear.
    2. Select the check box for the groups you want to map to the Proficy Authentication group selected in step 2.
    3. Select to move the selected items from Groups to Mapped Groups.

      The users belonging to the mapped UAA groups are now a member of the Proficy Authentication group selected in step 2.

  5. Map LDAP groups.
    1. From the Identity Provider drop down list, select the LDAP record.
      The groups from the LDAP server appear.
    2. Select the check box for the groups you want to map to the Proficy Authentication group selected in step 2.
    3. Optional: To search for an LDAP group, enter the keyword in the LDAP Groups Search Filter field and select .
    4. Select to move the selected items from Groups to Mapped Groups.

      The users belonging to the mapped LDAP groups are now a member of the Proficy Authentication group selected in step 2.

  6. Map SAML groups.
    1. From the Identity Provider drop down list, select the SAML record.
    2. To create SAML groups, enter the valid SAML group name in the Add SAML Group field and select the plus icon.
    3. Select the check box for the groups you want to map to the Proficy Authentication group selected in step 2.
    4. Select to move the selected items from Groups to Mapped Groups.

      If the mapped SAML groups are valid, then all their users become a member of the Proficy Authentication group selected in step 2.

  7. To unmap any of the mapped groups, select and move them back to Groups.

Results

UAA/LDAP/SAML groups are successfully mapped.