Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Organization | Endpoint | Roles | Entitlement Tab Significance

Manu269
All-Star
All-Star

Hello team,

We are exploring the Organization feature within Saviynt  (TPAG).

We have created few organization and onboarded users into same.

While creating the Organization, we have added few Endpoint, Roles and Entitlements as part of it.

Query?

1. What is the significance of above tabs?

2. We tried logging into saviynt by one of the user which is part of organization and raised request, we could see all other endpoints are also available for request?

3. Similarly, since we added only few entitlements from Endpoints in Organization, end user when tried raising the access, he can see all the entitlements for that EP?

Can someone let me know, how this is suppose to behave? Is this expected behaviour or am I missing any configuration?

Please note the users added as part of Organization have basic end user access.

 

Regards
Manish Kumar
If the response answered your query, please Accept As Solution and Kudos
.
10 REPLIES 10

sudeshjaiswal
Saviynt Employee
Saviynt Employee

Hello @Manu269,

Can you please check if that user's SAV role has organization selected?

For Ref:- https://forums.saviynt.com/t5/identity-governance/mapping-roles-endpoints-entitlements-to-organizati... 

Thanks.

If you find the above response useful, Kindly Mark it as "Accept As Solution".

Manu269
All-Star
All-Star

@sudeshjaiswal I have added the Organization for following fields in the SAV role.

Show Users in Request Access based on Organizations

Organizations

Regards
Manish Kumar
If the response answered your query, please Accept As Solution and Kudos
.

Manu269
All-Star
All-Star

Also restarted the server and logged in with Organization user.

The request access for self screen shows all the EP, Role configured in the system.

Anyhow, only subset of EP , Ent and Role are included in Organization.

Am i doing any mistake here?

Regards
Manish Kumar
If the response answered your query, please Accept As Solution and Kudos
.

  • Endpoint Tab - is used for Certification of Organization and application owner certification.
  • Entitlements Tab - was used previously in case of rule based provisioning and no relation on entitlement visible on ARS Request form.

Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.

@rushikeshvartak 1 last qq...  what would be the best suggestion to enable specific ep and entitlements for users belonging to particular organization?

Regards
Manish Kumar
If the response answered your query, please Accept As Solution and Kudos
.

Access Query and use of Entitlements Customproperty


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.

sudeshjaiswal
Saviynt Employee
Saviynt Employee

Hello @Manu269,

This is expected behavior.

Thanks,

If you find the above response useful, Kindly Mark it as "Accept As Solution".

Manu269
All-Star
All-Star

How can we control the access request and other components?

I dont see any writeup for same.

Regards
Manish Kumar
If the response answered your query, please Accept As Solution and Kudos
.

sudeshjaiswal
Saviynt Employee
Saviynt Employee

Hello @Manu269,

It can be managed in a similar manner how we limit the access  request for other users.

For Ref: https://forums.saviynt.com/t5/saviynt-knowledge-base/request-rules-implementation-usecase-for-app-en... 

Thanks.

Thanks


If you find the above response useful, Kindly Mark it as "Accept As Solution".

Manu269
All-Star
All-Star

@sudeshjaiswal The document says its for :

Also, this document is created for AD based logical endpoint or endpoint-filter based endpoint.

Can we have some more documents to verify this please

Regards
Manish Kumar
If the response answered your query, please Accept As Solution and Kudos
.