Users

In the SOTI Identity Users view, administrators can manage Users, organize them into Groups, and assign Roles.

  • Users: In SOTI Identity, users are the individuals who access SOTI ONE applications. They're created locally in SOTI Identity, and can be synchronized from an LDAP directory, or authenticated through an external Identity Provider (IdP).
    Note: Users are managed centrally, organized into groups, and assigned roles that define their permissions.
  • Groups: Groups are collections of users that simplify management. They allow administrators to assign roles, permissions, and application access to multiple users at once instead of configuring each individually.
    Note: A single user can belong to multiple groups.
  • Roles: Roles define what users or groups can do inside applications. Each role is tied to a set of permissions, and assigning a role gives users access rights. Roles can be applied to users or groups, and multiple roles can be combined.
    Note: When combining multiple roles, the most restrictive permissions always take precedence.

To access the Users view, from the Admin Console, open the main menu and select Users (see Users View).

SOTI Identity supports the three following types of users: Local (SOTI Account) Users, LDAP Users, and IdP Users.

User Type Description
Local (SOTI Account) Users

Local users are created in SOTI Identity and are provided with a SOTI Identity account, which they use to access SOTI ONE applications.

LDAP Users Users whose details are retrieved through an LDAP connection.
IdP Users Users whose credentials are authenticated by an external IdP and passed through to SOTI Identity.