Simulation
Simulations aim to assess the impact of a modification in the role model, i.e. any modification of a role or rule, before it is applied.
Overview
Identity Manager's simulations gather roles and rules which are to be created, modified or deleted, without being inserted in the actual role model straight away. More specifically, a simulation can involve:
- Resource Correlation Rule and Resource Classification Rule ;
- Scalar rules and navigation rules;
- Resource Type rules;
- Single Role and Composite Role ;
- Single Role Ruleand Composite Role Rule.
A simulation can also be created by the role mining tool for the automation of role assignments. See the Perform Role Mining topic for additional information.
Through simulation, integrators can:
-
create, modify or delete roles and rules in a given policy;
Only one simulation can be active per policy.
-
observe via simulation reports the impact on the whole system, i.e. both assignments and provisioning results, before the changes are applied;
-
decide to confirm or cancel changes.
Netwrix Identity Manager (formerly Usercube) recommends using simulation whenever performing an action (creation/modification/deletion) on the role model.
Perform a Simulation
See the Perform a Simulation for additional information.