Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Mapping AD Group to SAV Role

fullmoon_rout
New Contributor II
New Contributor II

Hi team,

Is there a way to map specific AD groups to SAVRole for a user ?

For e.g. when we request for a SAVRole to a user, he should also get a few AD groups also in addition to the requested SAVRole?

Regards,

Fullmoon

[This message has been edited by moderator to remove @ mention]

6 REPLIES 6

DixshantValecha
Saviynt Employee
Saviynt Employee

Hi @fullmoon_rout,

We are checking on this and will keep you posted.

DixshantValecha
Saviynt Employee
Saviynt Employee

Hi @fullmoon_rout,

Could you please provide more information about the use case you are trying to implement.

varunpuri
Regular Contributor
Regular Contributor

Hello @DixshantValecha ,

Customer wants to be able to manage capabilities within Saviynt too with the help of AD Groups.
Although these capabilities within Saviynt are managed through savroles which are local to Saviynt but customer is exploring the possibility of managing the capabilities within Saviynt through AD Groups so that if we define a mapping between AD Groups and SAV Roles and a person gets access to a particular or a few AD Groups (which are defined in that mapping), then he/she also gets relevant capabilites within Saviynt.

Best Regards,
Varun

DixshantValecha
Saviynt Employee
Saviynt Employee

Hi @varunpuri,

Thank you for the update. We are checking internally on your requirement and will keep you updated.

Paul_Meyer
Regular Contributor
Regular Contributor

@DixshantValecha 

Any feedback available on such a capability? We have a client that wants to manage SAV Role assignment/de-assignment based on Azure AD Security Group membership.

 

DixshantValecha
Saviynt Employee
Saviynt Employee

Hi @varunpuri,

Thank you for reaching out to Saviynt Support. We appreciate your inquiry regarding the management of capabilities within Saviynt through Active Directory (AD) Groups.

After carefully reviewing your request, we regret to inform you that this requirement is not currently feasible within the existing functionality of Saviynt. However, we acknowledge the importance of your use case and its potential benefits.

To further explore this functionality and its alignment with your business needs, we kindly request that you raise a ticket in our Ideas Portal.Saviynt Ideas Portal is available at ideas.saviynt.com