> For the complete documentation index, see [llms.txt](https://docs.verge.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.verge.io/run-the-platform/zh/xi-tong-guan-li/users-groups.md).

# 用户和组

## 用户

应为将使用该系统的每个个人单独创建一个用户账户。

{% hint style="success" %}
**授权来源**

使用授权来源时，可以选择从该来源自动创建用户。
{% endhint %}

### 用户类型

* **普通** - 适用于完整 UI 访问
* **API** - 仅适用于服务账户；例如运行脚本、同步等。
* **VDI** - 仅用于 VDI 用户仪表板

## 组

组是用户的集合。组也可以包含其他组。通过使用组，权限和订阅的管理通常可以简化。

## 创建新用户

1. 导航到 **系统** > **用户**.
2. 选择 **新建**.
3. 选择一个 ***授权来源*** （如适用）（如果系统未配置任何第三方授权来源，则不会显示此字段）。默认选择“--无--”会创建一个直接通过 VergeOS 进行身份验证的用户。

{% hint style="info" %}
如果授权来源已配置为自动创建用户，请不要在此处创建用户。
{% endhint %}

4. 输入一个 ***用户名***；这将作为用户的登录名。用户名在此云中必须唯一（注意：每个租户都是一个独立的 VergeOS 云）。
5. 选择适当的用户 ***类型***:
   * **普通** - 将登录完整 UI 的用户
   * **API** - 用于服务账户，例如用于站点同步的账户
   * **VDI** - 仅登录 VDI 仪表板的用户
6. 输入一个 ***密码*** 的用户。密码必须符合为此 VergeOS 云定义的密码复杂度设置；要求列在该字段下方。复杂度设置在 System -> Settings -> Password Complexity Requirement 中定义。
7. 在以下位置重新输入密码： ***确认密码*** 字段中。
8. 可选地， ***要求更改密码*** 选项可启用，以便在用户首次登录时提示其创建自己的密码。
9. 可选地，可以指定 ***显示名称*** 可为用户指定。用户登录 UI 后，显示名称会显示在屏幕右上角。
10. 启用时， ***双因素认证*** 登录 VergeOS 系统时，除了用户名/密码外，还需要使用安全代码（通过用户电子邮件接收）。
11. ***电子邮件地址*** 用于发送分配给该用户的订阅报告和警报，以及（如适用）双因素认证。
12. 该 ***物理访问*** 选项可勾选，以允许用户直接控制台访问节点。

{% hint style="warning" %}
**注意：** 启用 *物理访问* 选项允许该账户通过物理访问（例如 crashcart、ipmi 远程控制）和 SSH 以命令行方式登录。 **这只应授予受托负责低层次 VergeOS 服务器管理的用户。**
{% endhint %}

* **SSH 密钥** 可添加以提供基于密钥的 SSH 身份验证；可以定义多个密钥，使用户能够从不同计算机通过 ssh 密钥进行身份验证。注意：SSH 密钥是可选的；在没有关联 SSH 密钥的情况下，被授予物理访问权限的用户可以使用用户名/密码登录 SSH 会话。

  **添加新的 SSH 密钥条目：**

  * 将显示一个初始空白行，可在其中输入 SSH 密钥。
  * 如有需要，可单击加号 \[ ] 按钮添加其他密钥，这将插入一个新的空白行，可在其中输入 SSH 密钥。

    **选择和取消选择用于移动/编辑/删除的密钥：**
  * 所选条目将在左侧框中显示一个勾选标记。
  * 选择是一个切换操作：单击未选中的条目以选中它；单击已选中的条目以取消选中。
  * 可选择多个密钥用于删除或移动。

    **编辑现有密钥条目：**
  * 单击以选择要编辑的密钥。
  * 单击编辑 \[ ] 按钮。
  * 所选密钥将显示出来并可进行修改。编辑完成后，再次单击编辑 \[ ] 按钮以保存更改。

    **删除现有密钥条目：**
  * 单击以选择要删除的密钥。
  * 单击删除 \[ ] 按钮。

13. 可选地，在 ***组成员***&#x4E0B;，可选择要将用户添加到其中的组。提示：按住 Shift 或 Ctrl 键可选择多个组。
14. 单击 **提交** 以保存新用户。

## 创建新组

1. 从 **系统仪表盘**，选择 **组** 从左侧边栏。
2. 选择 **新建** 左侧菜单中的。
3. 输入一个 ***名称*** 作为该组名称（必填）。
4. 可选地，可以指定 ***描述*** 可为该组指定。
5. 可选地， ***电子邮件地址*** 可指定一个电子邮件地址，用于接收分配给该组的订阅警报和报告。
6. 单击 **提交** 以保存新组。

## 向组中添加成员（用户和/或组）

1. 从 **系统仪表盘**，选择 **组** 从左侧边栏。
2. **双击所需的组** 在列表中以显示组仪表板。
3. 单击 **成员**.
4. 单击 **添加用户** 或 **添加组** 左侧菜单中的。
5. 从显示的列表中选择用户/组。提示：按住 Shift 或 Ctrl 键可选择多个组。
6. 单击 **添加到组** 以应用更改。


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://docs.verge.io/run-the-platform/zh/xi-tong-guan-li/users-groups.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
