Click HERE to see how Saviynt Intelligence is transforming the industry. |
09/27/2024 05:54 AM
Hi All,
We have a requirement to provision an AD group first and then assign the requested endpoint's entitlement, I am seeking out help to know how we can achieve this?
The AD group should be assigned automatically since there is only one for whole endpoint, but roles needs to selected via end user only.
For example, AD group name is App_AD_Group and endpoint is Application_ABC with entitlments ent1, ent and ent3. If someone raises request in Saviynt for ent1 for Application_ABC. Before assigning that ent1 entitlement to user, it should assign App_AD_Group and then assign entitlement.
Any possible workaround to this?
AD app uses Saviynt's OOTB AD connector and Application_ABC uses REST connector
Solved! Go to Solution.
09/27/2024 06:05 AM
09/27/2024 06:07 AM
@varunakarnia , you can use entitlement map in rest connector endpoint entitlements. Map ent 1,2,3 with ad entitlement.
This will make sure if ent1,2,3 is requested a task for ad grp is created.
Schedule wsrety for ad and rest one after another. And keep AD First.
09/27/2024 06:25 AM