Click HERE to see how Saviynt Intelligence is transforming the industry. |
07/18/2024 07:42 PM
All,
Good morning. I was wondering if you have encountered a case where you need to do a certification with of the SAV ROLES.
We currently have a CPAM module installed, however, I did target the Privileged Access Application, but I am not able to see the SAV ROLES while doing the attestation. I been trying to search for any information in the site without success.
I appreciate your assistance.
Solved! Go to Solution.
07/18/2024 08:37 PM - edited 07/18/2024 08:43 PM
07/18/2024 08:38 PM
Yes you can.
To do this Saviynt should be onboarded as an endpoint.
Sav Role will be considered as Entitlement Type .
And actual sav roles (ROLE_ADMIN etc) will be considered as entitlement value.
In UM certification , include Saviynt endpoint as "Application to be included in certification"
Follow below post:
https://forums.saviynt.com/t5/identity-governance/saviynt-sav-roles-review/m-p/79749
07/22/2024 10:12 AM
Thank you all for all your support. Quick question. I see that the connector already created the RomoveAccessJSON, with that means is that I can technically just call the remove operations to remove the account automatically from the connector?
07/22/2024 10:37 AM
Yes once connections has been successful . I hope service account details updated in connection json
07/22/2024 10:55 AM
And what job should I run to clear the accounts, the same import jobs ?
Thanks a lot!
07/22/2024 11:27 AM - edited 07/22/2024 01:10 PM
Import job
07/22/2024 12:19 PM
Import job for Saviynt endpoint (name of your sav to sav connection)
07/22/2024 01:15 PM
Thank you all for participating on these responses.
I was able to set up the SAVRole attestations based on everyone response. However, first I had to configure Saviynt to Saviynt under Global configuration