Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Advantages & capabilities of TPAG

JB
Regular Contributor
Regular Contributor

Hello Experts,

Even I am looking for the details like advantages & capabilities. I couldn't find these info from FD document. It just explaining how we can create and update organization.

We can see license required for TPAG but organization is available in all Saviynt tenants. Can anyone explain how its managed ?

Regards,

Jithin B 

4 REPLIES 4

prasannta
Saviynt Employee
Saviynt Employee

Hi @JB 

Please refer the below documentation. It has the details of TPAG solution in detail:

https://docs.saviyntcloud.com/bundle/TPAG-Guide-v23x/page/Content/Third-Party-Access-Governance-Over...

Thanks

 

JB
Regular Contributor
Regular Contributor

Hello @prasannta 

We have already gone through this document.

We have created/updated the organization and able add users into it. We would like to know from use case perspective.

  • what is the use of adding Endpoints/access/Roles/attributes inot organization and how we can make use of it for Vendor/External users ?
  • Is it possible to restrict applications to request / access if we are using Organizations ?
  • Is there any need to create separate savroles for these users ?

Regards,

Jithin B

prasannta
Saviynt Employee
Saviynt Employee

Hi @JB 

Please find answers to your questions below:

  • what is the use of adding Endpoints/access/Roles/attributes in organization and how we can make use of it for Vendor/External users ?

Organizations are beneficial when you want to assign a set of entitlements for a particular organization and location to a number of member user(s). This is done by using the request rule and defining the department, job code and manager. When a user places a request using Access Requests, the option to select an organization and assign the relevant entitlements to members is available.

You can refer below documentation explaining the use of request rules:

https://docs.saviyntcloud.com/bundle/EIC-Admin-v2021x/page/Content/Chapter05-Policies/Creating-Reque...

  • Is it possible to restrict applications to request / access if we are using Organizations ?

You can sav roles to show the list of users, requesting access to an application based on organizations. If you don't want to expose application during request to certain organization users then you can use Access Query to configure that at endpoint level.

  • Is there any need to create separate savroles for these users ?

This is purely based on how you want to manage organizations within your environment. If basic enduser, manager sav roles serve the purpose, then there is no need to create custom sav roles for organization.

Hope this answers your questions.

Thanks

 

JB
Regular Contributor
Regular Contributor

@prasannta  Thanks for the information.