Groups
Overview
Groups are a powerful tool in Coralogix for bringing the right people together around the right data. They let you uniformly define user actions and control where they can act across the platform. Use groups to:
- Grant role-based permissions and policy-based access at scale, rather than managing users individually.
- Create data silos where necessary, so that only the relevant team can view specific dashboards, alerts, or other entities.
- Support collaboration across functions (e.g., DevOps, SecOps) without sacrificing security.
For details on creating or editing groups, see Create and Manage Groups.
Group types
Coralogix users can belong to one or more groups. Group types define who can see a group and how strictly access is enforced for its members.
| Type | Description |
|---|---|
| Open | Discoverable and joinable by any user. Useful for broad collaboration. |
| Closed | Hidden from other users. Membership by invitation or admin assignment. |
| Restricted | Closed group for sensitive content. Entities created for or assigned to this group are visible only to its members. |
Groups & access control
Through this group membership, admins may grant users role-based permissions and policy-based access:
- Role-based permissions define global permissions per entity type.
- Policy-based access refines access at the entity level. It applies per‑entity overrides to the RBAC baseline using policies defined by the entity’s creator.
Restricted group behavior
When you create or use a restricted group, entity types assigned to that group are visible only to its members. Any content created by a restricted group is private and can only be viewed and edited by its members.
For example:
- Share a troubleshooting dashboard only with your SRE group.
- Restrict a critical alert to the SOC Analysts group.
- Partition client environments by assigning each MSP customer to their own group.
- Allow everyone to view a dashboard, but only the Developers group to edit it.
Required permissions
Users with the following permissions can view and/or manage groups.
| Resource | Action | Explanation |
|---|---|---|
team-groups | Manage | Create groups, and control membership and permissions. |
team-groups | ReadConfig | View groups, membership, and permissions. |
team-groups | ReadSummary | View group summaries (lightweight view used in PBAC UIs). |