- Quick Start
- Managing Harmony SASE
- SaaS API
- Private Access (ZTNA)
- Networks
- Network Overview
- Creating a Network
- Regions and Points-of-Presence
- Private and Shared Gateways
- Connect Infrastructure
- Site-to-Site connection overview
- Prerequisites
- OpenVPN Tunnel
- Dynamic-IP Tunnels
- IPsec Connection Overview
- Wireguard Connector Overview
- Cloud-Base
- On-Prem
- Advanced Network Settings
- Cloud Firewall
- Agentless Applications
- Device Posture Check (DPC)
- Objects Library
- Networks
- Internet Access (SWG)
- Users and Groups
- Member Roles and Permissions
- Managing Groups
- Users Profiles
- Managing User Access
- P81 User Name and Password
- Password Requirements
- Identity Providers (IdP)
- SAML 2.0
- G Suite
- Azure AD
- Microsoft Entra ID (formerly Azure Active Directory) (SAML 2.0)
- Microsoft Entra ID (formerly Azure Active Directory) (Enterprise Application)
- Microsoft Entra ID (formerly Azure Active Directory) (App Registration)
- Microsoft Entra ID (formerly Azure Active Directory) (App Registration) Migration to Microsoft Graph
- SCIM
- Microsoft Entra ID (formerly Azure Active Directory) (SCIM)
- On-Premises Active Directory
- Multi Factor Authentication
- Threat Prevention
- Reporting & Analytics
- Agents
- API
- User Guides
- Unblocking User Accounts
- Generating a Sign-Out Code
- Reclaim Access after an IdP Lock
- Reset 2FA
- Deactivate 2FA
- Set Network Icon
- End User Instructions
- Installing Harmony SASE on Android devices (Android/Chromebook)
- Monitor Activity
- Onboarding the Infinity Portal
- Tracking the Billing
- Troubleshooting
- IPSec Troubleshooting
- Support Access
- Finding Your IP Address
- .HAR File
- Check Location and Language for Accurate Google Search Results
- Change your PC or Mac DNS Settings
- Page not loading? Perimeter 81's browsing and remote access troubleshooting guide
- Can't connect? Harmony SASE's Internet Connection Troubleshooting Guide
- How to collect logs
- Product Walkthrough Webinars
- How To
- Removing the Wireguard Connector
- Segmenting Networks
- Activate or Deactivate your Gateway
- Interconnectivity (Cloud-Agnostic)
- Uploading Tunnel Configuration Files
- Google Cloud VPC peering
- Google Cloud DNS
- AWS Route 53 DNS
- Certificate Manager
- Whitelisting Resources
- manage member devices
- JAMF Cloud
- Routes Table
- Managed Service Providers (MSP)
- Release Notes
- Copyrights Notices
- FAQ
Introduction
The Groups page allows you to create groups of members, based on roles and locations. For example, it allows you to apply a Policy to multiple members or restrict access only to a segment of the network.
To view the Groups page, access the Harmony SASE Administrator Portal and click Team > Groups.
Column | Description |
---|---|
Group | Group name. |
Networks | Name of the networks assigned to the group. |
Steps
Creating a Group
- Access the Harmony SASE Administrator Portal and click Team > Groups.
- Click Add Group.Note:You can search and select users in the Assign new members section in the right-pane.
- Enter the group name and click Create Group.
- To add members to the group:
- Click
in the last column of the group and then select Manage Members.
- In the Assign new members section, click + and select the required members.
- Click
- To add networks to a group or to grant access to a network segment:
- Click
in the last column of the group and then select Manage Networks.
The Assign Network to Group pop-up appears.
- Select the network and click Done.
The members can access only the selected networks from the Harmony SASE Agent.
- Click
- To delete a group, hover over the group that you want to delete and click
.
The Delete Group window appears.
- Click Delete Group.
- A group can also be automatically created as a result of an IDP sync over SCIM, and associate users with it.
- When a group is deleted in the identity provider (example: Okta), it remains in any policies or configurations where it was previously used. It appears greyed out, and when you hover over it, Deleted Group message is displayed.
- You cannot add the deleted group in any policies, but it can be removed from the existing policies.
- When the deleted group is re-enabled, it is restored without any members. To add members again, you must manually assign them through the IdP.
Editing members in a group
- Once you have created a Group, you can edit members by selecting the three-dotted menu (...) on the right side and choosing Manage Members.
- Select the + sign to list members. Select the team members you want to add to the Group. Please notice that you will see only non-members on the list.
The new members are added to the group.
Managing access for groups
Groups are created to control who can access which location. Select Groups in the left side panel.
Select the three-dotted menu (...) next to the group you’d like to limit or grant access to and select Manage Networks.
- Select or remove the teams as desired for this location.
Support Contacts
If you have any difficulties or questions, don't hesitate to contact Harmony SASE's support team. We offer 24/7 chat support on our website at Perimeter81.com, or you can email us at sase-support@checkpoint.com. We're here to assist you and ensure your VPN tunnel setup is a success.