What permissions are required to Create Change Requests from Reviews using RSA Identity Governance and Lifecycle?
Originally Published: 2019-03-14
Article Number
Applies To
RSA Version/Condition: All
Issue
Resolution
Change Requests may be generated from a review in one of two ways:
- Automatically, or
- Explicitly by Owner.
The "Generate Change Request: Explicitly by Owner" is an implicit permission that is granted to the Review Owner. It allows some different grouping to be selected when creating the Change Request for review items that reviewers select to revoke. There is no need for any additional permissions to be added.
The "Generate Change Request: Automatically" option allows the Change Request to be created when the Reviewer or the sign-off person saves the Review. The person who saves the review will be the Requestor of the change request. There is no need for any additional permissions to be added.
Monitors that have write_access or admin can also perform the review and when they save the review a change request is created using the revoled items. No need for any additional permission as well.
Related Articles
EAP-TTLS Configuration 225Number of Views Authentication Manager: Backup failed to Windows Share (cifs) 177Number of Views Provisioning/Termination Rule does not create change requests to revoke entitlements if the rule also disables and/or dele… 177Number of Views CRs created from Role Rules that include account creations create pending accounts with wrong Account Names in RSA Identit… 140Number of Views FAQ for finding information about the RSA Identity Governance & Lifecycle application 247Number of Views
Trending Articles
Unable to login to RSA Authentication Manager Security Console as super admin Authentication Manager Security Console and Operations Console Inaccessible After Certificate Update Authentication Manager Administration Server with operations console service Fails to Start with "No config.xml Was Found"… RSA SecurID Software Token Distribution to Android from RSA Authentication Manager 8.1 Authentication Manager Log Messages (23001-23091)
Don't see what you're looking for?