Documentation for Crowd 1.0. Documentation for other versions of Crowd is available too.
You can specify which principals (i.e. users) are allowed to authenticate against each application. For each mapped directory, you can either allow all users within the directory to authenticate with the application, or just particular groups within the directory.
For example, the default group crowd-administrators
, which is automatically created in the default directory that you specified during setup, is allowed to access the Crowd Administration Console. This means that principals who belong to the group crowd-administrators
are allowed to login to the Crowd Administration Console (assuming they supply a valid password).
To allow a group to access an application,
Alternatively, you can allow all users from a particular directory to authenticate against the application. See 3.3 Mapping a Directory to an Application.
Screenshot: 'Application---Specify Groups'
4. Managing Principals, Groups and Roles