Administrators and administrative users with the required permissions can create and modify Workbench user groups on the User Management page.
You can add a group in one of these ways:
The LDAP options are available only if you have configured Oracle Workbench to use LDAP for user authentication. For more information about using Workbench with LDAP, see Integrating LDAP with Oracle Commerce Workbench.
To add a group to Workbench, follow these steps:
Click Groups, and then click + New Group.
The Create Group dialog appears.
From Source, select Workbench, LDAP (if your application is set up for LDAP), or Commerce (if your application is set up for Commerce).
Note
The Source field does not appear if your application is not set up either for LDAP or Commerce.
Enter a name for the group in the Group ID field.
Note
If you selected Commerce for Source, enter a Commerce organization name, which will be the Oracle Commerce Platform equivalent of a Workbench group ID.
Click Validate if you made either of the following selections for Source:
LDAP. If you entered a valid LDAP group name, then Workbench retrieves available group information and populates the name and email fields. This information is not editable.
or
Commerce. If you entered a valid Commerce organization name, then Workbench retrieves available information from the Oracle Commerce Platform internal user repository and populates the email field. The email field is not editable. Optionally, you can enter a name in the Name field. This name does not map to any fields in the internal user repository.
If your Source is Workbench, enter values into the following optional fields:
In the field labeled Permissions from Groups, select the group or groups from which you want the new group to inherit permissions. Note that selecting groups from this list does not make the new group of subgroup of the groups that you select.
The new group's permissions are a superset of the permissions of all the groups from which the new group inherits.
Click the Membership tab to populate the new group with users and other groups,
Select a user or group from the Include a user or group drop-down list.
The user or group that you select is added to the list. The users in the list are members of the new group; the groups in the list are sub-groups of the new group.
Repeat the first step until you have added all the members that you want to the new group.
Select the Permissions tab to specify the permissions that will be inherited by users who belong to the new group; th or to subgroups of the new group.
In the Permissions tab, make the following choices:
Select the application in which the group will be working; for example, Discover.
Note
Any tools that the group's parent group grants permissions for are already selected.
Select the additional tools to which you want to give the group access.
Giving the group access gives it read, write and edit privileges.
Expand Experience Manager in order to select or deselect the site pages, folders, and content folders to which you want to grant read, write, and edit privileges. Any content to which the group's parent group grants permissions are already selected. The group's members have read access to any unselected content. Content permissions are inherited, so a content collection has the same permissions as the folder to which it belongs. You can also add permissions to a folder explicitly if the folder has no permissions. To limit the sites within an application that a user can access, deselect the Site Page nodes for those sites. Deselecting sites, pages, folders or content collections removes write access. The group still has read access.
Select or deselect the pages, folders, and content folders to which you want to update group access.
Content permissions are inherited, so a user has access to any child folders of a configured content folder.
Expand Keyword Redirects to update the redirect groups that users inheriting from the group can access.
Any redirect groups that the user group's parent group grants permissions for are already selected.
Select or deselect the redirect group nodes to which you want to update group access.
Note
You cannot use this procedure to remove permissions that a group is granted by membership in another group.
The new group profile appears on the Groups tab of the User Management page.