Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

Can we provide readonly access for on endpoint

Saksi
New Contributor II
New Contributor II

Hi,

Our requirement is to provide the access of accounts and entitlements for only one endpoint in readonly mode to specific users. Can we achieve it with the help of Savrole. If yes what all feature access and web service will be required?

I tried creating a savrole in readonly mode and i provided feature access and web service related to security system and endpoint. I have also added that savrole as the default savrole in connection.

 

Any suggestions how we can achieve this requirement.

7 REPLIES 7

NM
Honored Contributor III
Honored Contributor III

@Saksi what is the current behaviour do you see?

You will have to add admin: account and admin:ss too

Share the feature access list.


If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'

Saksi
New Contributor II
New Contributor II

Hi @NM,

These are the feature access and web service which i have added.

Saksi_0-1729099309493.png

Saksi_1-1729099486926.png

 

With this, I am able to see all the accounts from multiple endpoints. For security system it is giving access denied error.

NM
Honored Contributor III
Honored Contributor III

@Saksi try adding endpoint name in the sav role details page.


If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'

Saksi
New Contributor II
New Contributor II

@NM : It is still the same.

https://forums.saviynt.com/t5/identity-governance/disconnected-application-accounts-are-not-listing-...

https://forums.saviynt.com/t5/identity-governance/feature-access/m-p/114190#M76350


Regards,
Rushikesh Vartak
If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'.

@rushikeshvartak : I have already mentioned it in default savrole in connection. But no luck.

  • What is type of application ? does connection attached to security system ?
  • Please provide video https://gifcap.dev/
  • ⚠️ Reminder: Mask possible PII such as employee names, email addresses, phone numbers, IP addresses, account details, company-specific URLs, and client names before sharing.⚠️

Regards,
Rushikesh Vartak
If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'.