User Groups
On this page, you can manage User Groups and their roles in your Infinity Portal account. Each User Group has a unique name. A user can belong to multiple User Groups. You can add users to a group who are defined manually in the Infinity Portal, or import a group from an Identity Provider A system entity that creates, maintains, and manages identity information for principals and also provides authentication services to relying applications within a federation or distributed network. Acronym: IdP or IDP. (IdP).
Managing User Groups

|
Note - All fields marked with an asterisk (*) are mandatory. |
-
Go to
> User Groups.
-
In the toolbar, click New.
A wizard window opens.
-
In the Group Details step of the wizard, enter this information:
-
Name
-
Description
-
For Group Source, select one of these options:
-
Manually - Select this option to add only users who are defined manually in the Infinity Portal.
-
IdP directory Sync - Select an Identity Provider (IdP) and a group to import. The Infinity Portal automatically synchronizes group membership information from the IdP. This option is available only for an IdP that is integrated with the Infinity Portal and has Directory Sync enabled. See SSO Authentication Setup with Identity Provider.
-
IDP ID - Enter the ID of a group as it appears in your Identity Provider (IdP). This option is available only for an IdP that is integrated with the Infinity Portal. See SSO Authentication Setup with Identity Provider.
Note - In an IdP directory sync configuration, the Infinity Portal synchronizes group membership with the IdP on a regular basis. In an IDP ID configuration, the Infinity Portal queries the IdP for each login event.
-
-
Click Next.
-
-
Optional - In the Members step of the wizard, add more members to the group. These additional members must be defined manually in the Infinity Portal.
-
Click Add member.
A new window opens.
-
Select users to add to the group.
-
Click Next.
-
-
In the Access and Roles step of the wizard, assign roles to the user group:
-
For an account of type Managed Security Service
A Check Point service offering that helps customers with deployments or technical services for Check Point products. Provider (MSSP
Managed Security Service Provider (MSSP) - An managed security service provider (MSSP) provides outsourced monitoring and management of security devices and systems. Common services include managed firewall, intrusion detection, virtual private network, vulnerability scanning and anti-viral services.) , below Associated Accounts, select one of these:
-
This account [NAME OF YOUR INFINITY PORTAL ACCOUNT] only
The group is associated only with your Infinity Portal account. This is the default configuration.
-
[NAME OF YOUR INFINITY PORTAL ACCOUNT] + All Child Accounts
The group is associated with your Infinity Portal account and all of its child accounts (including child accounts that you create in the future).
-
Only specific accounts
This group is associated with Infinity Portal accounts that you add in the Include Accounts field.
-
All accounts except
This group is associated with your Infinity Portal account and all of its child accounts (including child accounts that you create in the future). Accounts that you add in the Exclude Accounts field are not associated with this group.
Example - The MSSP account Cyber MSSP has two child accounts: Acme Corp. and Logistics Inc. The administrator adds Acme Corp. in the Exclude Accounts field. As a result, the group is associated only with the Cyber MSSP account and the Logistics Inc. account.
-
-
Assign Global Roles to the group. See Users.
-
Assign Specific Service Roles to the group. See Specific Service Roles.
Example - When you select Support Contact Point for Harmony Connect in your Harmony Admins user group, this role automatically applies to users in the Harmony Admins Group.
-
-
Click Add.
The new User Group appears in the table.
|
Note - You can create a User Group without members and add the members later. |

|
Note - If in the Accounts tab you configured a User Group to be associated with a child account automatically, you can edit this User Group only from the parent account. |
|
Important - Immediately after you remove a user from a User Group, the user loses permissions that were based on the group. |
- Go to
> User Groups.
-
Select the User Group that you want to edit.
-
Click Edit.
A new window opens.
-
Make changes to the User Group.
-
Click Save.

-
From the list, select the User Group.
-
Click Delete.

-
Right-click the top row of the table that contains the names of the columns.
A popup window opens.
-
Select columns to show in the table.
Only the selected columns appear in the table.

-
In the Search field, click the Filter icon
.
The Filters pane shows on the right side of the Dashboard.
-
Apply one or more filter criteria.
-
To clear the filter, click Clear All.