<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: user.group vs. user.environment.group in Management &amp; Governance</title>
    <link>https://community.qlik.com/t5/Management-Governance/user-group-vs-user-environment-group/m-p/1929166#M22096</link>
    <description>&lt;P&gt;Hey there,&lt;/P&gt;&lt;P&gt;user.group is the attribute for the user which comes from a User Directory Connector. This is considered a "persistent" attribute in the sense that Qlik stores this information (unless removed via the user directory).&lt;/P&gt;&lt;P&gt;user.environment.* are&amp;nbsp;&lt;EM&gt;session&lt;/EM&gt; attributes. These come from the configured authentication provider (typically SAML but possible via JWT, OIDC, and Web Ticketing). These values are not stored inside of Qlik but instead are evaluated when the user accesses Qlik. There's a good primer on session attributes here:&amp;nbsp;&lt;A href="https://community.qlik.com/t5/Qlik-Design-Blog/User-Environment-What-Session-Attributes-in-Qlik-Sense/ba-p/1476590" target="_blank"&gt;https://community.qlik.com/t5/Qlik-Design-Blog/User-Environment-What-Session-Attributes-in-Qlik-Sense/ba-p/1476590&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;</description>
    <pubDate>Wed, 11 May 2022 11:31:57 GMT</pubDate>
    <dc:creator>Levi_Turner</dc:creator>
    <dc:date>2022-05-11T11:31:57Z</dc:date>
    <item>
      <title>user.group vs. user.environment.group</title>
      <link>https://community.qlik.com/t5/Management-Governance/user-group-vs-user-environment-group/m-p/1929012#M22089</link>
      <description>&lt;P&gt;Hi everyone,&lt;/P&gt;
&lt;P&gt;I play around with the security rules. In this context I am passing user groups from Active Directory to use in the conditions of the rules. One question is just coming up: What exactly is the difference between user.group and user.environment.group, if there is one.&lt;/P&gt;
&lt;P&gt;Any clues on this?&lt;/P&gt;
&lt;P&gt;Best&lt;BR /&gt;Simon&lt;/P&gt;</description>
      <pubDate>Wed, 11 May 2022 08:03:32 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/user-group-vs-user-environment-group/m-p/1929012#M22089</guid>
      <dc:creator>SimonInc</dc:creator>
      <dc:date>2022-05-11T08:03:32Z</dc:date>
    </item>
    <item>
      <title>Re: user.group vs. user.environment.group</title>
      <link>https://community.qlik.com/t5/Management-Governance/user-group-vs-user-environment-group/m-p/1929166#M22096</link>
      <description>&lt;P&gt;Hey there,&lt;/P&gt;&lt;P&gt;user.group is the attribute for the user which comes from a User Directory Connector. This is considered a "persistent" attribute in the sense that Qlik stores this information (unless removed via the user directory).&lt;/P&gt;&lt;P&gt;user.environment.* are&amp;nbsp;&lt;EM&gt;session&lt;/EM&gt; attributes. These come from the configured authentication provider (typically SAML but possible via JWT, OIDC, and Web Ticketing). These values are not stored inside of Qlik but instead are evaluated when the user accesses Qlik. There's a good primer on session attributes here:&amp;nbsp;&lt;A href="https://community.qlik.com/t5/Qlik-Design-Blog/User-Environment-What-Session-Attributes-in-Qlik-Sense/ba-p/1476590" target="_blank"&gt;https://community.qlik.com/t5/Qlik-Design-Blog/User-Environment-What-Session-Attributes-in-Qlik-Sense/ba-p/1476590&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;</description>
      <pubDate>Wed, 11 May 2022 11:31:57 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/user-group-vs-user-environment-group/m-p/1929166#M22096</guid>
      <dc:creator>Levi_Turner</dc:creator>
      <dc:date>2022-05-11T11:31:57Z</dc:date>
    </item>
  </channel>
</rss>

