You can create a group in a few simple steps (even dynamic ones!). Automation sounds complicated, but it really isn’t. It will save you and your team a lot of time and help to achieve security that’s built around your assets. Security can be strong without being difficult to manage.
Group memberships in JumpCloud are based on the attributes of a user object. Entitlements are applied to individual groups versus nesting like in Active Directory, where those permissions are inherited from the parent’s group object. That legacy makes it difficult to have strong access control and troubleshoot access control issues as directories grow bigger. In contrast, JumpCloud makes it easier for admins to determine why a user has access to something.
Dynamic groups also offer a stronger approach to entitlement lifecycle management by automating membership changes using attributes (and even some simple logic) without creating extra work. (However, if needed, static groups with explicit assignments are always an option.)
Think about it: you'll be able to get time-consuming tasks like onboarding out of the way quickly and move on with confidence that the user entitlements are correct. You can also save on licenses for apps that are over assigned to people who don’t really need that access.
JumpCloud allows you to create groups, either manually or through attributes, for users, devices, and policies. This demo is focused on walking you through creating a user group.
You’ll learn the basics of group creation, membership controls, and using attributes to create conditions. You’ll also see how to preview potential membership changes before they happen. Creating a group and assigning users to groups is simple, but membership rules take a little more time to understand. Getting started hands on with it may make it easier to understand.
Budget about 10-15 minutes of your time if you’re doing this in a live environment.
Not every step here is necessary to complete this tutorial. However, if you want to experience your evaluation of this (and other) feature as if you’re implementing the product, we recommend the following:
You’ve come this far, but stuff happens. We’ve all been there… when support tickets just flood in. Give this 2-min simulation a try if you get busy today: Creating a Dynamic User Group. You can always come back and do it for yourself later. Let’s get started once you’re ready.
Optional: Adding Users to a Group
Resources: Configure Dynamic User Groups
Conditional access to SSO applications: Protect privileged resources
Conditional access identity trust: Require MFA to access certain resources
Enroll a user group into JumpCloud Password Manager
You’ve just learned how groups work in JumpCloud. It’s a gamechanger for security and IT efficiency if you’re coming from Active Directory. IT becomes more efficient and responsive to business requirements through dynamic groups. For example, a finance department can be granted access to AWS in order to do some audit work simply by adding a new attribute rule for that group. There’s no risk of over-provisioning users like there would be with a nested model.
Get prepped now
Have your testers download JumpCloud Protect™ from the User Portal.
Download the admin app to test out on-the-go features such as password resets.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
New to the site? Take a look at these additional resources:
Ready to join us? You can register here.