Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Salesforce Connector | Issue with PermissionSet

sachinjain
New Contributor II
New Contributor II

Hi Team,

For Salesforce Application we have 3 types of entitlements  -

  1. Profile
  2. PermissionSet
  3. Groups

Groups are NOT requestable and mapped to PermissionSet as a child entitlement.

Profile and PermissionSets are requestable entitlements.

When Request is approved, Saviynt create tasks for Profile, PermissionSet and Groups. But in View Existing Access and User account’s Entitlement Hierarchy, only Profile and Groups are visible. On the application side Profile, PermissionSets and Groups are being assigned to user as separate entities only.

As per our understanding, during reconciliation Saviynt is only fetching the data related to Profile and Groups.

Would like to understand if it is as per the design consideration during onboarding or there was any system limitation that made us configure the application in this manner.

I would be helpful if anyone can provide me REST apis OOTB is using to fetch all the account to entitlement mapping details.

Thanks,

Sachin Jain

 

1 REPLY 1

rushikeshvartak
All-Star
All-Star

Permission Set are comes under each profile hence it won’t be visible under view existing access. If this is required please raise enhancement request on saviynt idea portal.

 

rest api doc https://developer.salesforce.com/docs/platform/graphql/references/graphql?meta=Summary


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.