Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Removing users from Groups

Use the Simulate Remove from Group for simulating the user's access changes for a resource (table).

Before you begin

Role required: access_analyzer_admin

Enable Take actions. For more information, see Configuring the Access Simulator (Take actions).

Procedure

  1. Navigate to All > Access Analyzer > Access Simulator.

  2. Select Simulate from the Remove the user from a Group section.

  3. In the Simulation criteria view, configure the following fields:

    FieldDescription
    Select user *Specify a user name and select from the list. In this example, ITIL User.
    Select group *Specify a group and select from the list. In this example, Incident Management.
    Rule type *Rule type is auto-populated and can’t be changed.
    Select table *Specify a table name and select from the list. In this example, Incident.
    Select recordSpecify a record name and select from the list.
    Select fieldSpecify a field name to select from the list. This field can be used to analyze permissions at the field level. For example, Active, Created By, and so on.

    d

Image omitted: simulate-remove-group-criteria.png
Remove the user from a group- criteria
  1. Select Next.

  2. Preview the changes.

    Use the Preview changes view to see a simulation of your configured choices. Validate the group that has been removed from the user before moving to the next step.

Image omitted: simulate-remove-group-preview.png
Preview
  1. Click Next.

  2. In the Simulated results view, check the Present status and Simulated status to validate that access is Passed or Blocked to the simulated user as intended.

Image omitted: simulate-remove-group-results.png
Results
**Note:**

-   To know more about an ACL \(operation\) in the **Simulated results** view, click its operation link.
-   To start the simulation again for a different role, click **Start over**.
-   To exit the simulation, click **Exit**.
  1. Click Next.

  2. To apply the simulated changes, on the Take action view, click Remove and complete.

    Note:

    • If Access Simulator isn’t enabled, you can't complete the simulation. To enable it, select Enable actions and accept the legal information.
    • To hide the simulation, select Hide actions. To unhide and enable actions, go to Settings. For more information, see Configuring the Access Simulator (Take actions).
    • To exit the simulation without applying the simulated changes, select Skip and Exit. If you clicked Remove and complete, the simulated group is successfully removed from the user. You can verify the access again by using the Access Analyzer. For more information about how to verify access of a user, see Access Analyzer.