Unless defined as members of the local user authentication store, users and groups are not stored directly on the appliance, but are instead referenced from external user directories. In most cases, you manage individual users in AMC only when you need to assign them permissions that are different from those that their group membership allows. There are two ways to form groups of users in AMC using information stored in external directories:
For Microsoft Active Directory and LDAP directories, there are several ways to add groups (this feature is not available for adding users referenced by a RADIUS realm or in the local user store):
Manually type a distinguished name (DN)
Search the contents of the directory and select groups from a list
Build a dynamic group expression
For testing and evaluation purposes, you can also create local users on the appliance. See Managing Local User Accounts.