When the delegated admin rights for a user REST resource type has admin scope resources-in-specific-groups (and only in this case), a user is added to one of the configured groups when the user is created:

  • For admins having rights to only one group, the new user is automatically added to that group. No field for Select Group displays.
  • For admins having rights to more than one group, the admin selects a group to add the user to in the Select Group list.
  • Admins can select from both static and dynamic groups.
  • For dynamic groups, in addition to selecting the group, the new entry must also match criteria for membership of that group.

    For example, in a dynamic group of members with uid=user.111*, the uid starts with user.111.

In order for an administrator to create a new user in that group, they must:

  1. In the Select Group list, select the group name.
  2. Enter the value for uid that starts with user.111.