ManageEngine – Dynamic Group Membership Based on User Properties
When a group fails to contain the correct members, access to resources or to a network application could fail. So, ensuring that group membership is correct can go a long way in reducing calls about failures to access resources. One way to ensure that the correct users are located in group is to leverage user properties to place users into the correct groups.
Let’s look at the following example. Say you have an HR application that all HR employees need to be able to access on a daily basis. Users who are members of the HR_App1 group are given this access. You also have a specific task within the HR application which only HR managers should have the ability to access. Users who have membership in the HR_App1_Managers are given this access.
For each of these group memberships, you can rely on the user account properties to give you control over which users should belong to each group.
To configure these group memberships automatically, you can follow a few easy steps in ADManager Plus. First, you need to setup an Automation Policy to add users to the HR_App1 group, which you can see in Figure 1.
Read the entire article here, Dynamic Group Membership Based on User Properties
via the fine folks at ManageEngine