and more in a single search tool across platforms. Read the announcement here. |
03/28/2024 11:51 AM
Based on documentation it looks like both Access Query based visibility and Endpoint Group Policy based visibility cannot be achieved in parallel. Also don't see a way to migrate Access Query based visibility to new Endpoint Group Policy because this policy is purely based on Entitlement type and tags but not considering user attributes/accounts attributes etc.
Can someone provide me more details about achieving both use cases?
Solved! Go to Solution.
04/03/2024 03:30 AM
Hello @sk,
Based on documentation it looks like both Access Query based visibility and Endpoint Group Policy based visibility cannot be achieved in parallel. Also don't see a way to migrate Access Query based visibility to new Endpoint Group Policy because this policy is purely based on Entitlement type and tags but not considering user attributes/accounts attributes etc.
Thanks.
04/03/2024 10:15 AM
@sudeshjaiswal : Your first response is understandable but second response is confusing to me.
Let me reiterate my understanding
Enable Policy Rules in global configuration will not impact the endpoints which are not enabled for PAM. This configuration is specific to the endpoints which are PAM Enabled.
That means once we enable this setting all PAM Enabled Endpoints will only follow Endpoint Group Policy rules instead of Access Query but any other endpoints which are not PAM Enabled will always follow Access Query
Is this correct statement?
04/04/2024 03:35 AM
Hello @sk,
Enable Policy Rules in global configuration will not impact the endpoints which are not enabled for PAM.
Answer :- No, it wont impact any other endpoints which are not PAM Enabled.
This configuration is specific to the endpoints which are PAM Enabled.
Answer : Yes, this configuration is specifics to PAM enables endpoints.
That means once we enable this setting all PAM Enabled Endpoints will only follow Endpoint Group Policy rules instead of Access Query but any other endpoints which are not PAM Enabled will always follow Access Query
Answer : Correct.
Thanks.