When an Organization Owner user creates a custom group and associates it with other Organizations, the group becomes shared. The Organization Owners of the target Organizations receive and email invitation from the source Organization's Owner to import the shared group and assign service roles.

As an Organization Owner receiving the invitation to import a shared group created in a different Organization, you assign service roles for the shared group while importing it to your Organization.

You can distinguish imported shared groups from shared groups created in your Organization by their label: Custom/remote label.

The users of the shared group you imported can access the services in your Organization according to the roles you assigned to the group. This allows cross-Organization access to services at the group level and removes the need to send individual invitations to each user.
Important: Shared groups imported from other Organizations cannot be edited. You can edit the roles you assign to the shared group or remove the group from your Organization.

Prerequisites

You must know the name or the Organization ID of the source Organization that created the shared group you want to add.

Procedure

  1. On the Cloud Services Console, select Identity & Access Management > Groups.
  2. Click Add Groups.
  3. Select Import groups from other organizations and click Continue.
  4. From the drop-down menu, select the source Organization that created the shared group.
  5. Select the shared group you want to import.
  6. Select an Organization role to assign the selected group access to your Organization.
  7. Click Add service access to assign service roles to the selected group:
    1. Use the drop-down menu to select the service in your Organization you want the shared group to access.
    2. Click the roles box and select the service roles you want to assign to the shared group.
    3. Define the time period for the access. You might choose an end date or provide a non-expiration access.
  8. To add access to an additional service, click Add service access and repeat steps 7.a through 7.c.
  9. Leave the Send emails to all invited users notifying them of this role assignment checked if you want all users of the shared group to receive invitations to access your service.
  10. Click Import.

Results

The shared group is added as custom remote group to your Organization.