Click HERE to see how Saviynt Intelligence is transforming the industry. |
04/12/2022 12:58 PM
I have 7 end Point (AD) and each end point can have multiple AD account for one Identity .
We have defined a role that can have multiple Entitlement for other end point also.
While requesting role how the process will decide account ID for that Entitlement need to provision?
Thanks
Pradeep
Solved! Go to Solution.
04/12/2022 02:02 PM
Hi Pradeep,
Greetings!
You can set the accounttype for the accounts for which you wish to add role entitlements in "Primary Account Type" at endpoint show page.
Add access task (for role entitlements) will be created for the matched accounts with accounttype as mentioned in "Primary account type" and not all user accounts.
If no value is mentioned in "Primary Account Type" config, then Add access task (for role entitlements) will be created for all active user accounts
04/12/2022 02:02 PM
Thanks for quick response .....
How to Add access task ?Can you give more insight?
I am giving more details..
We have 7 AD Domain for Accounts and we have 3 types of account
1)Adminstartive
2)HPA
3)Shared
Every domain can have mutiple Adminstartive,HPA and Shared account.
Role base request is only applicable for Adminstartive type account only and for rest of two only entitlements.
Hope you understand my problem and any Guidance is really appricaited.
Thanks
Pradeep
04/12/2022 02:02 PM
Pradeep,
How do you make a role request for a user in Saviynt?
If you request for a role for a user, and it gets approved, then add access task for all role-entitlements will be created for the user account. This is what I meant when I said "Add access task" in my previous comment