User Lifecycle Rules

A UserLifecycleRule represents a rule that applies to users based on their inactivity, state and authentication method.

The rule either disable or delete users who have been inactive or disabled for a specified number of days.

The authentication_method property specifies the authentication method for the rule, which can be set to "all", "all_non_sso", or a specific authentication method.

The rule can also include or exclude site and folder admins from the action.

List User Lifecycle Rules

SDK Method

files_sdk.user_lifecycle_rule.list()

Return Object

ListObj[UserLifecycleRule]

Authorization Requirement

Available to all authenticated keys or sessions.

Additional Arguments

Example Request

import files_sdk

try:
  user_lifecycle_rules = files_sdk.user_lifecycle_rule.list()
  for user_lifecycle_rule in user_lifecycle_rules.auto_paging_iter():
    # Operate on user_lifecycle_rule
except files_sdk.error.NotAuthenticatedError as err:
  print(f"Authentication Error Occurred ({type(err).__name__}):", err)
except files_sdk.error.Error as err:
  print(f"Unknown Error Occurred ({type(err).__name__}):", err)

Show User Lifecycle Rule

SDK Method

files_sdk.user_lifecycle_rule.find()

Return Object

UserLifecycleRule

Authorization Requirement

Available to all authenticated keys or sessions.

Method Arguments

ArgumentDescription
id
int64
Required
User Lifecycle Rule ID.

Example Request

import files_sdk

try:
  user_lifecycle_rule = files_sdk.user_lifecycle_rule.find(id)
  # Operate on user_lifecycle_rule
except files_sdk.error.NotAuthenticatedError as err:
  print(f"Authentication Error Occurred ({type(err).__name__}):", err)
except files_sdk.error.Error as err:
  print(f"Unknown Error Occurred ({type(err).__name__}):", err)

Create User Lifecycle Rule

SDK Method

files_sdk.user_lifecycle_rule.create()

Return Object

UserLifecycleRule

Authorization Requirement

Requires either a Site-Wide API key or User API key or session from a User with Site Admin permissions.

Method Arguments

ArgumentDefaultDescription
apply_to_all_workspaces
boolean
falseIf true, a default-workspace rule also applies to users in all workspaces.
authentication_method
string
User authentication method for which the rule will apply. Use all_non_sso to target every non-SSO authentication method with one rule.
Possible values: all, password, sso, none, email_signup, password_with_imported_hash, password_and_ssh_key, all_non_sso
group_ids
array(int64)
Array of Group IDs to which the rule applies. If empty or not set, the rule applies to all users.
inactivity_days
int64
Number of days of inactivity before the rule applies
include_site_admins
boolean
falseIf true, the rule will apply to site admins.
include_folder_admins
boolean
falseIf true, the rule will apply to folder admins.
name
string
User Lifecycle Rule name
notify_users
boolean
falseIf true, users will be emailed before the rule disables or deletes them.
partner_tag
string
If provided, only users belonging to Partners with this tag at the Partner level will be affected by the rule. Tags must only contain lowercase letters, numbers, and hyphens.
user_state
string
"inactive"State of the users to apply the rule to (inactive or disabled)
Possible values: inactive, disabled
user_tag
string
If provided, only users with this tag will be affected by the rule. Tags must only contain lowercase letters, numbers, and hyphens.
workspace_id
int64
0Workspace ID. 0 means the default workspace.

Example Request

import files_sdk

try:
  user_lifecycle_rule = files_sdk.user_lifecycle_rule.create({
    "apply_to_all_workspaces": True
  })
  # Operate on user_lifecycle_rule
except files_sdk.error.NotAuthenticatedError as err:
  print(f"Authentication Error Occurred ({type(err).__name__}):", err)
except files_sdk.error.Error as err:
  print(f"Unknown Error Occurred ({type(err).__name__}):", err)

Update User Lifecycle Rule

SDK Method

user_lifecycle_rule.update()

Return Object

UserLifecycleRule

Authorization Requirement

Requires either a Site-Wide API key or User API key or session from a User with Site Admin permissions.

Method Arguments

ArgumentDescription
apply_to_all_workspaces
boolean
If true, a default-workspace rule also applies to users in all workspaces.
authentication_method
string
User authentication method for which the rule will apply. Use all_non_sso to target every non-SSO authentication method with one rule.
Possible values: all, password, sso, none, email_signup, password_with_imported_hash, password_and_ssh_key, all_non_sso
group_ids
array(int64)
Array of Group IDs to which the rule applies. If empty or not set, the rule applies to all users.
inactivity_days
int64
Number of days of inactivity before the rule applies
include_site_admins
boolean
If true, the rule will apply to site admins.
include_folder_admins
boolean
If true, the rule will apply to folder admins.
name
string
User Lifecycle Rule name
notify_users
boolean
If true, users will be emailed before the rule disables or deletes them.
partner_tag
string
If provided, only users belonging to Partners with this tag at the Partner level will be affected by the rule. Tags must only contain lowercase letters, numbers, and hyphens.
user_state
string
State of the users to apply the rule to (inactive or disabled)
Possible values: inactive, disabled
user_tag
string
If provided, only users with this tag will be affected by the rule. Tags must only contain lowercase letters, numbers, and hyphens.
workspace_id
int64
Workspace ID. 0 means the default workspace.

Example Request

import files_sdk

try:
  # Find the user_lifecycle_rule object by its id.
  user_lifecycle_rule = files_sdk.user_lifecycle_rule.find(id)
  user_lifecycle_rule.update({
    "apply_to_all_workspaces": True
  })
except files_sdk.error.NotAuthenticatedError as err:
  print(f"Authentication Error Occurred ({type(err).__name__}):", err)
except files_sdk.error.Error as err:
  print(f"Unknown Error Occurred ({type(err).__name__}):", err)

Delete User Lifecycle Rule

SDK Method

user_lifecycle_rule.delete()

Return Object

No return value.

Authorization Requirement

Requires either a Site-Wide API key or User API key or session from a User with Site Admin permissions.

Example Request

import files_sdk

try:
  # Find the user_lifecycle_rule object by its id.
  user_lifecycle_rule = files_sdk.user_lifecycle_rule.find(id)
  user_lifecycle_rule.delete()
except files_sdk.error.NotAuthenticatedError as err:
  print(f"Authentication Error Occurred ({type(err).__name__}):", err)
except files_sdk.error.Error as err:
  print(f"Unknown Error Occurred ({type(err).__name__}):", err)

The UserLifecycleRule Object

Some of the methods above return a UserLifecycleRule object. The attributes of this object are listed below.

AttributeDescription
id
int64
User Lifecycle Rule ID
authentication_method
string
User authentication method for which the rule will apply. Use all_non_sso to target every non-SSO authentication method with one rule.
Possible values: all, password, sso, none, email_signup, password_with_imported_hash, password_and_ssh_key, all_non_sso
group_ids
array(int64)
Array of Group IDs to which the rule applies. If empty or not set, the rule applies to all users.
action
string
Action to take on inactive users (disable or delete)
Possible values: disable, delete
inactivity_days
int64
Number of days of inactivity before the rule applies
include_folder_admins
boolean
If true, the rule will apply to folder admins.
include_site_admins
boolean
If true, the rule will apply to site admins.
apply_to_all_workspaces
boolean
If true, a default-workspace rule also applies to users in all workspaces.
name
string
User Lifecycle Rule name
notify_users
boolean
If true, users will be emailed before the rule disables or deletes them.
partner_tag
string
If provided, only users belonging to Partners with this tag at the Partner level will be affected by the rule. Tags must only contain lowercase letters, numbers, and hyphens.
site_id
int64
Site ID
workspace_id
int64
Workspace ID. 0 means the default workspace.
user_state
string
State of the users to apply the rule to (inactive or disabled)
Possible values: inactive, disabled
user_tag
string
If provided, only users with this tag will be affected by the rule. Tags must only contain lowercase letters, numbers, and hyphens.