Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

Assign AD group1 to an account when group2 has indicator=1

rashmirudrappa
New Contributor III
New Contributor III

Hi Team,

The is a client requirement to achieve the below task.

For Example
1. TestUser1 has 2 AD accounts: 1 primary and 1secondary
1. Consider 2 AD groups/entitlements: Group1 & Group2
2. For any account, when access request is raised to add Group1 which has indicator=1
3. Then, Add Group1 to the requested account.
4. Also add Group2 to the primary account

Could you please let me know how can we achieve this requirement?
Can Request Rule be used?

Thank you

Rashmi

5 REPLIES 5

dgandhi
All-Star
All-Star

You can assign it using actionable analytics. Provision Access should be the default action.

In the query you can check if the group1 is already assigned or not, if assigned then assign group 2.

Thanks,
Devang Gandhi
If this reply answered your question, please Accept As Solution and give Kudos to help others who may have a similar problem.

rushikeshvartak
All-Star
All-Star

Regards,
Rushikesh Vartak
If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'.

NM
Honored Contributor II
Honored Contributor II

Hi @rashmirudrappa , are both the accounts part of same endpoint?

rashmirudrappa
New Contributor III
New Contributor III

Thank you all. I will verify the options provided.

Yes. Both accounts are part of same endpoint.

 

Thank you

Rashmi

NM
Honored Contributor II
Honored Contributor II

@rashmirudrappa , then use actionable analytics.