The security group to which a user belongs controls the
level of access and privileges for the user within the system. To
address changes in your security needs, you can remove a user from
a security group.
Before you begin
You must delete a security group from the application server
before you can remove users from a security group. To remove a user
from a group, you must be authorized to reassign users to that group.
Use the
Authorize Group Reassignment action
in the Security Groups application or the Users application to grant
this authorization.
About this task
If you delete a security group in the directory server, but you
do not want to delete the group from the system, you can delete the
users from that group. The users will then no longer have access to
the applications to which the group previously had access. If your
implementation uses an application server to authenticate with a directory,
you can associate users with groups in the directory or in the system,
depending on your settings. You cannot delete users from the MAXEVERYONE
group.
Procedure
- In the directory server, delete the users from the security
group that you want to delete. You must wait until the
VMMSYNC cron task has fully synchronized the users and security groups
in the directory server with the users and groups in the system.
- Delete the security group in the directory server.
- In the Security Groups application, select the group containing
the relevant user.
- Click the Users tab.
- Delete the user.
- Save your changes