CalGroups Management Guide
This guide provides instructions for creating and managing folders, groups, and memberships within CalGroups at UC Berkeley.
Table of Contents
How to Create a New Folder
- Navigate to the folder in which you want your new folder to reside.
- Click the More actions button.
- Select Create new folder.
- Review the Create in this folder field to ensure the hierarchy is correct.
- You can click the “search for a folder…” link to see other locations.
- Folder Name: Enter a name for your new folder.
- Folder ID: Do not change.
- Description: Enter a description explaining what the folder will hold.
- Click the Save button.
How to Create a New Group
In the example below, a new group will be created to serve as an Admin Privilege group.
- Navigate to the folder in which you want to create a new group.
- Click the More actions button.
- Select Create new group.
- Group name: Use something descriptive (refer to Naming Conventions).
- Group ID: Leave as is (unless your use case requires it to be different).
- Description: Enter a description of the group's purpose.
- Click the Save button.
Tips for New Groups:
- Users are allowed to create groups only in folders they have access to.
- A group name and ID are usually the same, so the ID auto-populates.
Adding Members to Groups
Add a single member
- From inside the group, click the Add members button.
- Type the member email address, UID, or name in the search field.
- Select the person from the grey drop-down menu that appears.
- Click the Add button.
Alternative Method to Add Single Users
- Click the Add members button.
- Click the link to “search for an entity.”
- Type the member name in the search field and click Search.
- Click on the person you want to add and click Add.
Add members to a group from a text file or Copy/Paste
To add members from an external source, you need the member UIDs.
Using a Text File
- Prepare the import file (Click here to see a sample import file).
- Enter
entityIdOrIdentifier on the first line.
- Paste UIDs, one per line, below it. Save as a .txt file.
- In CalGroups, navigate to the group and click More actions > Import members.
- Select Import a file and upload your .txt file.
- Click Submit.
Copy/Paste a list of UIDs
- Navigate to the group, click More actions > Import Members.
- Select Copy/paste a list of Member Ids.
- Paste UIDs into the box and click Validate.
- Press the Submit button.
Note: If a UID matches a name (e.g., UID 100), it may return an incorrect account. If this happens, add the member individually.
Removing Members from Groups
- Navigate to the group.
- Select members by clicking the boxes next to their names.
- Click the Remove selected members button.
How to View Group Members
- Direct members: People added directly to the group.
- Indirect members: Members of groups that were added to this group (nested membership).
How to Make an Access Group (Composite)
Access groups allow for automated de-provisioning. They require a person to be in your Ad Hoc group AND an Official group (like "All Employees").
- Create an empty group and name it clearly (e.g., [Name] Access Group).
- Inside the empty group, select More actions > Edit composite.
- Click Yes to enable composite.
- First Factor Group: Your Ad Hoc group.
- Operation: Choose and (intersection).
- Second Factor Group: The official group (e.g., "All Employees").
- Click Save.
Create Include/Exclude Composite Groups
- Create an empty group.
- Open More actions > Attribute Assignments.
- Click + Assign attributes.
- Type
include and select etc:legacy:attribute:legacyGroupType_addIncludeExclude. Click Save.
- Intermediate groups ("includes", "excludes", etc.) will be created automatically in the folder. Update these sub-groups to manage membership.
Export Members from Group
- Navigate to the group, click More actions > Export members.
- Choose All member data and press Export.
How to Add to My Favorites
Navigate to any group or folder, click More actions, and select Add to my favorites.
Understanding The Difference between Groups and SPAs
When searching, you will see both the Account and the SPA Group. You can only see a SPA Group if you are a member of it. Search results display as: UID - name - department name.
How to Change a Group's Name
- Only group admins can perform this.
- Navigate to the group, click the name, and select More actions > Edit group.
- Change the Group Name and Group ID. Click Save.
Support
Request access to a folder space via a Service Request in ServiceNow.
If you have questions about CalGroups or APIs, contact: calnet-admin@berkeley.edu.