Reference Guide
...
User Group Creation
User Group Definition Tab
the user group is under the user menu user groups can be created, edited, and deleted from this page user group features are addressed in this section group type this panel includes 2 types admin group this checkbox assigns admin rights to the group autonomous group this checkbox defines the autonomous users’ group (e g , script users) this group’s users may be excluded in radius logs to avoid creating a log flood these users’ passwords never expire tacacs+ access permissions direct access when kron pam is configured as an aaa or tacacs+ server for devices with aaa with tacacs+ protocol, the “direct access” checkbox needs to be checked all connections should go through kron pam console access similar to the “direct access” permission, this checkbox gives the aaa and tacacs+ devices console access password life time set password ttl defines whether ttl is used for the relevant group password ttl (days) defines the maximum time allowed for the use of passwords for users in the configured user group when a user’s password reaches its ttl, they are forced to change it the next time they log in setting this feature “s ” 1" means that the password of the users in this group will never expire if this value is set “o”"0" (zero) or left empty, the user group, and consequently the users, will be ignored during the password expiration control by setting the system parameter to "notify user before ttl password expire," users can receive email notifications a certain number of days before their password expiration date require connection approval require connection approval from group manager defines whether the connection approval process will be used enable user group license determines whether the protocols to be used by the relevant group will be activated or not the priority condition for these selected protocols is that the license definition has been made