Manage user groups

Last updated on Dec 16, 2024

Learn how to create, edit, and manage user groups in the Admin Console to give a set of users the same product permissions.

A user group is a collection of users with a shared set of permissions. Instead of assigning permissions to each user separately, you assign them to a group and then add users to that group.

For example, an Imaging department with 50 users can be set up once: create a user group with all 50 users, then assign the Adobe Lightroom product profile to the group. User groups save time by assigning licenses in bulk, and the group's permissions stay the same as users move in and out of it.

Create user groups

Applicable role: System Administrator

You can create groups one at a time in the Admin Console, or use a CSV bulk upload to create multiple groups at once.

In the Admin Console, go to Users > User groups.

Select New User Group.

Enter a name and description for the user group and select Save.

On the User Groups page in the Admin Console, select the More Options  icon.

Choose Add User Group by CSV from the drop-down list.

In the Add User Groups by CSV dialog, select Download CSV Template, and choose Standard template.

Update the downloaded CSV file with the details of user groups to add:

CSV file field

Description / Notes

User group name

(Mandatory) Can have a maximum of 255 characters

Description

(Optional) Can have a maximum of 255 characters

User group admins

(Optional) Multiple admins can be assigned by separating each admin with a comma and enclosing the list within quotes. The entry for each admin must include the user's identity type, followed by a hyphen, and then the email address:

'<identity type>-<email address>,<identity type>-<email address>...'

For example:

'Federated ID-test-account@acme.com,Enterprise ID-test-user@acme.com'

Depending on the application used to create the CSV, the app may add additional quotes upon save, which causes the processing to fail. It's a good practice to inspect the raw CSV in a simple text editor to ensure that each field has only one opening and closing quote.

In the CSV, you cannot include users (as admins) who are not currently part of the organization in the Admin Console.

Assigned product profiles

(Optional) You can assign multiple product profiles by separating each profile with a comma and enclosing the list within quotes. However, the product profiles that you include, must already be set up for the organization.

Similar to adding multiple admins (described above), when adding multiple profiles, the profiles must be surrounded with a single set of quotes.

For example:

'Default Adobe Target configuration 2, Default Photoshop configuration'

Ensure that you specify the Product Profile name and not the product name.

Drag the updated CSV onto the Add User Groups by CSV dialog box and select Upload.

Note

You can upload a CSV file size of up to 10 MB.

You're taken back to the User Groups page. The list may not immediately display the groups you added. This process can take a few minutes; the list updates when the bulk operation completes.

After the bulk operation is complete, you receive an email. You can also view a detailed report of the operation via Bulk Operation Results.

If your organization is part of a Global Admin Console, global administrators can share groups across multiple organizations using a single user management source.

Edit user groups

Applicable role: System Administrator

In the Admin Console, you can edit the name or description of an existing user group. With the CSV bulk upload, you can also edit the user group admins and the product profiles assigned.

In the Admin Console, go to Users > User groups.

Select the name of the user group to edit, then select Settings.

Update the name and description and select Save.

On the User Groups page in the Admin Console, select the More Options  icon.

Choose Edit User Groups by CSV from the drop-down list.

In the Edit User Groups by CSV dialog box, select Download CSV Template, and choose Standard template. The template CSV downloads to your computer.

Select Cancel to close the dialog. For each group that you want to edit, include the following details in the CSV:

  • Description
  • Group admins assigned
  • Product profiles assigned

To get these details for a group, select the group name on the User Groups page, then select Settings.

Copy the group name and paste it in the User Group Name field of a row in the CSV.

Note

The group name uniquely identifies the row, so you cannot edit it via CSV. To rename a group, use the manual procedure.

To retain the description, copy it into the Description field; to remove it, leave the field empty; to set a new one, enter it.

On the Admins tab, enter the admin email addresses and identity types in the User Group Admins field, comma-separated and enclosed in single quotes:

'<identity type>-<email address>,<identity type>-<email address>...'

For example:

'Federated ID-test-account@acme.com,Enterprise ID-test-user@acme.com'

Depending on the application used to create the CSV, the app may add additional quotes upon save, which causes the processing to fail. It's a good practice to inspect the raw CSV in a simple text editor to ensure that each field has only one opening and closing quote.

  • To add admins to the group, add their details (email addresses and identity types) in the format described above.
  • To retain admins in the group that you are editing, you must include their details.
  • To delete admins from the group, ensure that you exclude (or remove) their details.

You cannot include users (as admins) who are not currently part of the organization in the Admin Console.

On the Assigned Product Profiles tab, enter Product Profile names in the Assigned Product Profiles field, comma-separated and enclosed in single quotes:

'<Product Profile name>,<Product Profile name>,...'

For example:

'Default Adobe Target configuration 2, Default Photoshop configuration'

Ensure that you specify the Product Profile name and not the product name.

To add product profiles, they must already be set up for the organization.

After completing these steps for all groups, save and close the CSV file.

Drag the updated CSV onto the Edit User Groups by CSV dialog box and select Upload.

Note

You can upload a CSV file size of up to 10 MB.

Updates may take a few minutes to appear. They're available when the bulk operation completes. After the bulk operation is complete, you receive an email. You can also view a detailed report of the operation via Bulk Operation Results.

Add users to groups

Applicable role: Product Administrator, System Administrator

Note

Product admins cannot add new users to groups. They can only add the users that already exist in the org.

On the User Groups page, select the group name to add the user to.

Select Add User.

Enter a name or email address. You can search for existing users or add new ones by entering a valid email address and completing the information on the screen.

You can add up to 10 users here. To add more, repeat the steps.

Select Save.

You can add multiple users to a group at once. To copy users from one group to another, export users from the source group and add them to the destination group.

Note

This procedure adds existing users to groups. If you want to add users to your organization and groups in one go, see Add multiple users.

While working on a group, select the More Options  icon on the group page.

Select Add Users by CSV.

Select Download CSV template, and choose either Current user list (recommended) or Standard template. For a description of the fields, see CSV file format.

Edit the downloaded file with the users to add to the group.

In the dialog, drag-and-drop the file.

Select Upload.

After the bulk operation is complete, you receive an email. You can also view a detailed report of the operation on the Bulk Operations Results page. For troubleshooting tips on bulk uploading to the Admin Console, see Troubleshoot bulk user upload.

Add Admins to groups

Applicable role: System Administrator

You can delegate administering a group to Group Administrators, who can then manage that group's users.

In the Admin Console, go to Users > User groups.

Select the user group to add the admin to. The details of the selected user group appear.

Go to the Admins tab and select Add Admin.

Enter a name or email address. You can search for existing users or add new ones by entering a valid email address and completing the form. You can add up to ten admins. To add more, repeat the steps.

Select Save.

The Admins tab now displays the admin you assigned to this group.

Assign Product Profiles to user groups

Applicable role: Product Profile Administrator, System Administrator

You can assign product profiles to user groups. So, all the users in that group to receive the same set of product permissions.

In the Admin Console, go to Users > User groups.

Select the user group to add a product profile to.

Go to the Assigned Product Profiles tab and select Assign Product Profile. The products listed are based on your organization's purchase plan.

  • If the group has more than 75,000 users, you're prompted with a warning. You can still proceed, but we recommend not assigning such large groups of users to product profiles.
  • If the group has more than 2,00,000 users, you'll see an error and cannot assign a product profile to the group.

Select the product profiles to add to the user group.

Select Save.

The Assigned Product Profiles tab now displays the product profiles you added to this group. As a Product Profile administrator, you can also add user groups to product profiles while working with product profiles.

Note

As a Group administrator, to remove a user from a group, select the user on the Users tab for the group and select the Remove  icon.

Remove user groups

Applicable role: System Administrator

When you remove a user group, the users in that group are retained in the Admin Console. However, if you had assigned product profiles through the group, those users lose access to the associated products.

In the Admin Console, go to Users > User groups.

Select the checkbox to the left of the user groups to delete.

Select Remove User Groups.

In the confirmation dialog box, select Remove User Groups.

Remove users from groups

Applicable role: User Group Administrator, System Administrator

While working with user groups, select the group name to remove the user from.

Select the checkbox to the left of the users in the list.

Select Remove Users.

In the confirmation page, select Remove Users.

Use the bulk remove procedure to remove multiple users from a group at once. To move users from one group to another, remove them from one group, and add them to the other

While working on a group, select the More Options  icon on the group page.

Select Unassign Users by CSV.

Download the Sample template, which provides the required data structure. For a description of the fields, see CSV file format.

Open the CSV file and edit it so it contains only rows for the users to remove from this group.

In the dialog, drag-and-drop the file.

Select Upload.

After the bulk operation is complete, you receive an email. You can also view a detailed report of the operation on the Bulk Operations Results page.

Export group users

You can download the user data for a group. For example, to add users from one group to another, download the user list from the source group and add it to the other group. To remove the users from the source group afterward, use the same list with the bulk remove procedure.

While working on a group, select the More Options  icon on the group page.

Select Export users list to CSV.

Choose a folder location to download the file and select Ok.

User groups and asset sharing

Adobe Creative Cloud end users can collaborate on folders, libraries, and Adobe XD cloud docs with other users by sharing these assets publicly or privately. Private sharing is available for individual sharing recipients and groups. Active-Directory synced-groups and user groups are part of an Organization’s address book and can be used as sharing recipients on assets owned by the organization. Currently, group sharing is only available in Adobe XD.