Group management
  • 12 Oct 2023
  • 4 Minutes to read
  • Contributors
  • Dark
    Light
  • PDF

Group management

  • Dark
    Light
  • PDF

Article summary

1. Group management

In Constellio, a group is made up of users with the same functions in the organization and therefore need the same access to security and roles. Groups make it easier to assign security because by associating a user with a defined group, the user will automatically inherit the roles and access assigned to that group. 

You will find your groups in Pilotage -> Manage Security -> Groups tab

Manage users
These options are grayed out if your system is connected to LDAP. For more information, see the LDAP synchronization section of the documentation  or consult your system administrator. 

2. Tabs

The page that displays all groups has two options for filtering groups. The first option is to choose whether to display active or inactive groups.

A group is considered active if it is present in the collection and has the status "Active".

A group is considered "inactive" if it is present in the collection with a status other than "Active". The second option consists of a search field.

2.1 Assets

The "Active" tab lists the active groups of groups. 

2.2 Inactive

The "Inactive" tab lists inactive groups of users. 

Inactive groups 
It is always possible to reactivate an inactive group: click on the "Inactive" tab -> Edit group -> Check the "Active" box in the Status -> Click on "Save". 
Inactive groups
Access and roles assigned to an inactive group will be removed in the inherited permissions of users associated with it. 

3. Create a group

  1. Click on " Administration " in the navigation menu;
  2. Click on " Manage Security ";
  3. On the page, click on " Add Group ";
  4. In the " Add/Edit Group " window, complete the metadata for creating a group and click " Save ".
Metadata for creating a group
Field Name
Description
CodeObligatoryEnter a code to identify the group.
Group nameObligatoryEnter a clear and concise name for the group.
CollectionFacultativeSpecify the collections that apply to the group.
StatusFacultativeSpecify the status (active or inactive) of this group. 
Create a group
A group is always created with an active status. 

 


4. Consult a group

  1.  Click on " Administration " in the navigation menu;
  2. Click on " Manage Security ";
  3. In the " Groups " tab, click on the magnifying glass to the right of the name of the group to be consulted.

The viewing window for a group allows you to create subgroups as well as edit and delete the group. But also to add, view, modify or remove the users who are in the group.


5. Filter groups

The page that displays all groups has two options to be able to filter groups. The first option is to choose whether to display active or inactive groups. A group is considered active if it is present in the collection. A group is considered "inactive" if it is removed from the collection. The second option consists of a search field to display only the groups that meet the chosen criterion. 


6. Actions menu


6.1 Add a subgroup

This option adds a subgroup to the group.


6.2 Consult

This option allows you to view the group's metadata card and its information.


6.3 Edit/Edit a group

This option allows you to edit the metadata associated with the group.


6.4 Manage the security of a group

Allows you to add, remove, or modify permissions through administrative units. (See the " Autorisations " section)

Access to the collection
It is not possible to assign "Global Accesses" to a group. 

6.5 Manage Security Clearance

This option allows you to assign or remove security classifications to the group. (See the article "Security Clearance")


6.6 Manage group roles

This option allows you to assign, remove, or modify roles to the group. It is possible to choose a specific role for a particular administrative unit. (See the Role management page)


6.7 Add to collection(s)

This option allows you to add the group to one or more collections of your choice. 

Add to collections
To be able to add a group to a collection, you must first find the group in question in a collection where it is already present and add it to another collection or add a group.

6.8 Add the user to groups

To add users:

  1. In the " List of users " list;
  2. Click on " Add to group" to the right of the name of the desired user;
  3. The user is added to the " List of users attached to the group" list

6.9 Remove the user

To remove users: 

  1. In the list " List of users attached to the group ";
  2. Click on the red " X " to the right of the name of the desired user;
  3. The user removes himself from the list and adds himself to the " list of users " list.
Remove users
The accesses and roles assigned to the group will be removed in the inherited permissions of the users you are removing. 

6.10 Remove from collection

This action removes the group from one or more collections. The group is then deleted from the affected collections.

Delete a group
Deleted groups are sometimes found in the "Inactive" tab of the group management page. However, these groups no longer exist. The system only keeps track of these groups to facilitate their reactivation if necessary, for example, when they still have active permissions when they are deleted.

6.11 Merge groups

This option allows you to merge groups together. 

  1. Click on the "Merge Groups" action;
  2. Select the groups to merge and check them;
  3. Check the option "Merge into selected group";
  4. Click on "Merge".
    Security
    When you merge groups, they will accumulate the permissions and roles assigned to them separately. 

Was this article helpful?

Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.