Server Configuration > Post Install Server Security > Choosing Your Security Policy > Specifying Which Security Realm to Use for Group Enumeration
 
Specifying Which Security Realm to Use for Group Enumeration
Group enumeration is the process the Integrity Lifecycle Manager server uses to retrieve group lists from a security realm.
By default, group definitions are retrieved from the security realm specified by your security scheme. If you are using multiple security realms, you need to explicitly set which realm to retrieve groups from in the following property of the security.properties file:
mks.groupsDomain
You can also choose to use your corporate security realm for users and their authentication, while always defining groups locally in MKS Domain. In this case, you specify mksdomain as the groups domain. The MKS Domain does not require that the members of the groups all be from the same security realm.
For more information on setting up groups in the MKS Domain, see “Managing MKS Domain Groups”.
* 
To avoid authentication errors, group names must be different from all user names.