Title: Configure Group Role Assignment with jboss-cli.sh Describe the issue: 1. "Users to be included or excluded from a role can be configured in the Management Console and the jboss-cli.sh tool." 2. Procedure 10.25. Add a Group as included in a role says "/core-service=management/access=authorization/role-mapping=ROLENAME/include=group-USERNAME:add(name=GROUPNAME, type=GROUP)" 3. Procedure 10.28. Remove a user group exclude entry says "This procedure shows how to remove an group exclude entry from a role mapping" 4. Procedure 10.28. Remove a user group exclude entry says "The include name must be ..." Suggestions for improvement: 1. "Groups to be included or excluded from a role can be configured in the Management Console and the jboss-cli.sh tool." 2. "/core-service=management/access=authorization/role-mapping=ROLENAME/include=group-GROUPNAME:add(name=GROUPNAME, type=GROUP)" 3. "This procedure shows how to remove a group exclude entry from a role mapping" 4. "The exclude name must be ..."
One more thing: role mapping includes/excludes do NOT have to be named "group-GROUPNAME", that's just a convention. They can be called however the admin wants -- this is just one naming scheme that ensures uniqueness.
The parst of the docs mentioned by lthon in original report seems to changed, can you confirm? If this is ready for QE please change the status appropriately
Verified. EAP 6.4.2.CP.CR2. Revision: 6.3.0-51. Clearing needinfo.