Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Request roles for a user but provision access for specific account

shubhamj596
Regular Contributor
Regular Contributor

Hi Everyone,

For our customer we have configured an enterprise role for endpoint 'EP1' with entitlement 'ent1'

And 

Now in EP1 for the same user 'user1' we have 2 accounts ie 'user1' and 'xuser1'

Now if we raise a new enterprise request for 'user1' user, it is provisioning the entitlement ie 'ent1' which is a part of enterprise role to both the accounts 'user1' and 'xuser1'.

Is there a way we can let saviynt not to provision the access to 'xuser1' and only to 'user1'?

Regards,

Shubham

2 REPLIES 2

ParitaSavla
Saviynt Employee
Saviynt Employee

Set the account type at the account level as say "Primary" Value. PFA screenshot

ParitaSavla_0-1680114399957.png

Then next would be to set the Primary Account type config at Endpoint level as the value "Primary"

ParitaSavla_1-1680114487073.png

Now, if you try adding the role to the user, it will only create add access tasks for the Primary Account. 

Let me know if this helps!

 

shubhamj596
Regular Contributor
Regular Contributor

Hi Parita,

Thanks for the update.

In our case, both 'user1' and 'xuser1' accounts have same accounttype as 'A'.

The above solution will not working in this case then.

Regards,

Shubham