Documentation for Crowd 2.0.x. Documentation for other versions of Crowd is available too.

In Crowd, users are referred to as user entity objects or just users.

Groups and roles are known as permission container objects. Groups are particularly important in Crowd, as they are often used to control access to applications. Note also that the crowd-administrators group confers Crowd administration rights to its members.

Roles are used less frequently, depending on the requirements of individual applications.

Crowd's role-based access control could be enhanced

At present, the implementation of roles in Crowd is identical to the implementation of groups. Additional development work would be needed to differentiate the functionality of roles from groups. If you would like to help us to design better role-based access control, please add a comment to the improvement request CWD-931, letting us know how you would like to see it work.

This section describes how to add/edit users, groups and roles via the Crowd Administration Console. Note that the ability to do this depends on the permissions of the directory which contains the users, groups and roles.