Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

Update account after disabling

Shubhamjain27
Regular Contributor II
Regular Contributor II

Hi Everyone,

We have a customer requirement where we need to follow 30/60/90 days policy for the inactive accounts

Inactive accounts: When the last logon date is > 30 days, the AD account should be disabled(Can be achieved).

After 60 days of being disabled, the account should be moved to a different OU and update description.(Question is, how the update account task will be triggered when the account is already inactive)

After 90 days of moving the account to termed OU, the account should be deleted(How this can be achieved for the inactive accounts)

Any insights would be helpful

2 REPLIES 2

armaanzahir
Valued Contributor
Valued Contributor

Hi @Shubhamjain27 

 

For triggering updates for the account even after account disablement, enable the below config in the Global config page

armaanzahir_0-1716812851462.png

 

https://docs.saviyntcloud.com/bundle/EIC-Admin-v24x/page/Content/Chapter06-EIC-Configurations/Config...

 

For deleting disabled accounts, use the removeaccountjson for hard delete. (and disableaccountjson for soft delete)

Remove Account tasks get created for disabled/inactive accounts.

 

Regards,
Md Armaan Zahir

rushikeshvartak
All-Star
All-Star

Did you tried using actionable analytics


Regards,
Rushikesh Vartak
If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'.