Administrate
In the Admin section you can do the following:
-
How to use Identity Manager's reporting modules to produce IGA reports for auditing and governance purposes.
-
Review Orphaned and Unused Accounts
How to remediate license and security issues caused by orphaned and/or unused accounts.
-
How to write to a managed system.
-
How to review provisioning orders before generation.
-
How to use Identity Managerto manually write to the managed systems.
-
How to use Identity Manager to automatically write to the managed systems.
-
Review Non-conforming Assignments
How to review non-conforming assignments, i.e. approve or decline the suggestions made by Identity Manager after every synchronization. The aim is to handle the differences between the values from the managed systems and those computed by Identity Manager's role model.
-
How to review non-conforming permissions, i.e. approve or decline the role suggestions made by Identity Manager after every synchronization. The aim is to handle the differences between the navigation values from the managed systems and those computed by Identity Manager according to the role catalog.
-
How to review unreconciled properties. The aim is to handle the differences between the property values from the managed systems and those computed by Identity Manager according to provisioning rules.
-
Review an Unauthorized Account
How to remediate unauthorized accounts. The aim is to review the accounts whose assignments don't comply with the rules of the role model.
-
How to certify existing access by reviewing a specific range of assigned permissions for auditing purposes.
-
Schedule a Certification Campaign
How to create and schedule access certification campaigns, defining their scope.
-
Execute a Certification Campaign
How to execute access certification campaigns, i.e. review specific entitlement assignments and deprovision inappropriate access.
-
Request Entitlement Assignment
How to send a manual request to add, update or remove an entitlement for an identity.
-
How to review user permissions grouped by roles.