To configure a default client group for all users in a profile called managers, enter the following:
user@host# set access profile
managers session-options client-group [m1 m2]
If you are finished configuring the device, commit the configuration.
To check the configuration, see Verifying Firewall User Authentication.
If a client belonging to the profile, managers, does not have any group information configured, then the client automatically inherits the groups m1 and m2.
The reason to have a single database for different types of clients (except admins) is based on the assumption that a single client can be of multiple types. For example, a firewall user client can also be an L2TP client.