User groups allow you to control which tasks tenant users can perform. You can create local groups or import federated groups from an identity source, such as Active Directory or OpenLDAP.
Choices
Creating groups for an S3 tenant
You can manage the access permissions for an S3 tenant account by creating local groups or by importing federated groups. As required, you can also specify S3 policies for each group.
Creating groups for a Swift tenant
You can manage access permissions for a Swift tenant account by creating local groups or by importing federated groups. At least one group must have the Administrator permission, which is required to manage the containers and objects for a Swift tenant account.
Tenant management permissions
Tenant management permissions are assigned to groups and determine which tasks users can perform using the Tenant Manager or the Tenant Management API. A user can belong to one or more groups.
Cloning a group
You can create new groups more quickly by cloning an existing group.
Editing a group
You can edit a group to change the display name of a local group or to update permissions.
Removing a group
You can remove a group. Any users who belong only to that group will no longer be able to sign in to the Tenant Manager or use the tenant account.