Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

Provision RACF default and secondary groups on AD / LDS based on the enterprise roles of a user

vvnibm2002
New Contributor
New Contributor

We have a bunch of enterprise roles some of which have a hierarchy of roles. There is criteria based on which a user gets provisioned to the enterprise role hierarchy. This hierarchy of enterprise roles can change based on the user's HR attributes such as job code, org levels, etc. All of this is being done through user update and technical rules. 

Based on the combination of the enterprise roles assigned to the user, the user's AD / LDS account needs to be updated with default and secondary RACF groups. Has anyone implemented such a requirement? If so, please share your ideas here.

1 REPLY 1

rushikeshvartak
All-Star
All-Star

You can use actionable analytics to calculate this logic 


Regards,
Rushikesh Vartak
If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'.