Group Policy Setting Fields

These fields apply to the group_policy_setting_added, group_policy_setting_changed, and group_policy_setting_removed events. Group policy setting events also include the Permission Fields.

Field Value Explanation

account:disabled

1 or 0

1: The accounts associated with this group policy are disabled.
0: The accounts associated with this group policy are active.

account:expiration

Unix timestamp

The date and time the accounts associated with this group policy will expire, if ever.

allow_override

1 or 0

1: This setting can be overridden by a policy with a lower priority.
0: This setting cannot be overridden by a policy with a lower priority.

comments

string

Any comments associated with this group policy.

idle_timeout

integer or
site_wide_setting

The maximum number of seconds these representatives can be idle within the representative console before being logged out. The site_wide_setting option defaults to the timeout set on the Management > Security page. If no timeout, uses none.

jumpoints

serialized
labeled
list

The group’s Jumpoint access in the form of permission:id:name, where permission is one of added, removed, or unknown; id is the unique identifier of the Jumpoint; and name is the name of the Jumpoint.

policy:id

string

The unique identifier of the group policy for which this setting is configured.

policy:name

string

The name of the group policy for which this setting is configured.

team_memberships

serialized
labeled
list

The group’s team memberships in the form of permission:role:id:name, where permission is one of added, removed, or unknown; role is one of all, team_member, team_lead, or team_manager; id is the unique identifier of the team; and name is the name of the team.

tz

string

The time zone to use for the representative login schedule for this group policy.