Viewing groups
Use the Groups page to view the existing groups in the directory.
About this task
You must have the Identity Data Admin role to create or edit groups. With the Identity Data Read Only role, you can view groups and group membership, but you can’t create or edit groups. |
Steps
-
Go to Directory → Groups and browse or search for the group that you want to view.
-
Click the group name to open the group details panel.
The results list updates as you enter the search query and shows the current groups. Learn more in Searching for groups.
Groups provisioned from an external source are indicated with the External Group icon () and with badges that indicate how the groups are provisioned (for example, Just-in-time) and from where they are sourced (for example External IdP or LDAP Gateway.
Result
The group details pane shows information about the group on the following tabs:
Overview
The Overview tab shows the name, description, and summary for the group, including the number of identities in the group, the group ID, custom properties stored as key-value pairs, and other details about the group, such as when it was created and last updated. The information displayed depends on whether you are viewing an internal group or an external group.
- Internal groups
-
- Group ID
-
The ID for the group in PingOne.
- Description
-
A description of the group. If this field is not visible, a description wasn’t provided.
- Display Name
-
The name of the group as it’s displayed on the Groups page and in other areas of PingOne.
- Population
-
Population groups only. The name of the population associated with the group. If this field is not visible, the group was created at the environment level.
- Last Updated
-
The date of the most recent change made to the group.
- Created
-
The date the group was created.
- External groups
-
- Group ID
-
The ID for the group in PingOne.
- Description
-
A description of the group. If this field is not visible, a description wasn’t provided.
- Display Name
-
The name of the group as it’s displayed on the Groups page and in other areas of PingOne.
- Name
-
To maintain unique group names, PingOne shows a slightly different group name for groups that were provisioned from an external source. The group name is based on the external group name and the source of the group in the format
<group-name>|<group-source>|<group-ID>
. For example,CN=Accounting,OU=People,DC=local|GATEWAY|23bd87do1-041d-nrnn-05bjb90d9
. Learn more in Just-in-time provisioning of external groups. - Last Updated
-
The date of the most recent change made to the group.
- Created
-
The date the group was created.
- External Group Details
-
This section includes the following information about the external group:
- Source Type
-
The source type from which the group originates, either External IdP or LDAP Gateway.
- Source Name
-
The name of the source in PingOne. Clicking the name takes you to the configuration page for the IdP or gateway.
- Group Type
-
The type of external group, based on how it is provisioned.
- Original External Group Name
-
The name of the group as it appears in the source from which it originates.
Users
The Users tab shows the current members of the group.
The Direct label indicates that a user or group belongs to the group directly, rather than belonging to a group within that group or matching a filter. |
Groups
The Groups tab shows any nested groups in the group.
Roles
The Roles tab shows any roles that have been assigned to the group. Learn more in Administrator Roles.
Sync Status
If the group is referenced in any provisioning rules, the sync status information for that group is shown here. Learn more in Sync status.