Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

Technical birth right rule

VikramIngale
New Contributor
New Contributor

Hi All,

We have a use case where we want to create birth right rules for existing AD groups which already has the members assigned via AD.

Now, we have mapped the group to the rule based on criteria(country='US') but on condition fails it is not removing(remove access task) the existing members from the group.

How, do we make it working for existing group members ? Any work around ?

Version - v5.5 sp3.11

1 REPLY 1

avinashchhetri
Saviynt Employee
Saviynt Employee

Hello @VikramIngale,

So these users you are asking about, were the access assigned by Saviynt ? In other words, does Saviynt know that these access are birthright access and needs to be re-evaluated when the attribute change occurs ?

 

 

Regards,
Avinash Chhetri