What permissions are required to Create Change Requests from Reviews using RSA Identity Governance and Lifecycle?
2 years ago
Originally Published: 2019-03-14
Article Number
000063423
Applies To
RSA Product Set: RSA Identity Governance and Lifecycle
RSA Version/Condition: All
 
Issue
What permissions are required in order for reviewers to Create Change Requests from Reviews??
Resolution
No special permissions need to be added for creating Change Requests from reviews.

Change Requests may be generated from a review in one of two ways:
  1. Automatically, or
  2. Explicitly by Owner.
This is defined under the General tab of a review definition:

User-added image

The "Generate Change Request:  Explicitly by Owner" is an implicit permission that is granted to the Review Owner. It allows some different grouping  to be selected when creating the Change Request for review items that reviewers select to revoke. There is no need for any additional permissions to be added.

The "Generate Change Request: Automatically"  option allows the Change Request to be created when the Reviewer or the sign-off person saves the Review. The person who saves the review will be the Requestor of the change request. There is no need for any additional permissions to be added.

Monitors that have write_access or admin can also perform the review and when they save the review a change request is created using the revoled items. No need for any additional permission as well.