Use cases
Connect role and resource groups
Use nested groups to easily manage access to resources while maintaining existing user group structures. You can:- Define requestable groups containing resources; for example, a group called Prod Resources, composed of prod AWS and PagerDuty resources
- Define non-requestable groups containing users; for example, a group called Software Engineers pulled from an Okta group rule
- From the Prod Resources detail page under Group Access, add the Software Engineers group as a nested group, and set an access duration
Connect disparate groups
You can also use nested groups to connect disparate groups that require access to the same resources, e.g., a Google Group and Okta group, two Okta groups, etc.Configuration
To set up a nested group:- Go to Inventory > Apps and find the group you’d like to serve as the containing group. The containing group contains the member group you’ll add.
- Go to the Group Access tab on the containing group.
- Select Add Groups and search for the member group(s) to add.
- Optionally, set the access to be timebound.
- Select Add Groups to save the group.


