# Active Directory Groups

The Active Directory Groups section allows administrators to validate AD Groups in order to map to WSM roles. This ensures users are granted the correct permissions and access levels within WorkSpaces Manager based on their group membership in Active Directory.

<figure><img src="/files/2jeneL2miRYA4MGiESH0" alt=""><figcaption></figcaption></figure>

You can create new roles by using the Create Role button, there you enter the name of the AD group you want to use and click validate

{% hint style="info" %}
The ObjectGUID populates automatically once the group is successfully validated.
{% endhint %}

<figure><img src="/files/Muw8ws5oYIjwcBRMaKNg" alt=""><figcaption></figcaption></figure>

To set up mapped roles, please follow the steps outlined on the [AD Group Mapping](/admin/appendices/ad-group-mapping.md) page.


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://docs.nuvens.cloud/admin/security-section/active-directory-groups.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
