Displaying attestators for pending attestation cases of application roles and sending reminders
You can display attestators for pending attestation cases of application roles at any time and send reminder emails.
To show attestators for pending attestation cases of application roles and send them reminder emails
-
In the menu bar, click Responsibilities | My Responsibilities.
-
On the My Responsibilities page, click the One Identity Manager application roles tile.
-
On the One Identity Manager application roles page, in the list, select the application role whose attestation cases you want to show.
-
On the <application role name> (Application role), click the Attestation tile.
-
(Optional) Depending which attestation case you want to display, change to the corresponding tab.
-
Click View approvers for pending cases.
-
In the Send reminder mail dialog, click in the Send reminder in the row of the employee you want to send the reminder to.
To send reminder emails
-
Run the previous steps 1 - 5.
-
On the <application role name> (Application role) page, click Send reminder.
-
In the Send reminder mail dialog, in the custom message field, enter a message for the attestor.
-
Click OK.
Related topics
Approving attestation cases of application roles.
You can make approval decisions about attestation cases of application roles.
To grant or deny approval to attestation cases of application roles.
-
In the menu bar, click Responsibilities | My Responsibilities.
-
On the My Responsibilities page, click the One Identity Manager application roles tile.
-
On the One Identity Manager application roles page, in the list, select the application role whose attestation cases you want to show.
-
On the <application role name> (Application role), click the Attestation tile.
-
Select Approve.
-
On the Pending attestations: One Identity Manager application roles page, click the application role you want to approve.
-
On the Pending attestations: <application role name> page, perform one of the following actions:
- Grant approval by clicking
Approve next to the attestation case.
- Deny approval by clicking
Deny next to the attestation case.
-
Click Next.
-
(Optional) On the Pending attestations page, perform one of the following actions:
-
In the Reason for approvals field, enter a reason for your approval decision.
NOTE: If you have made several approval decisions, the reason you enter here applies to them all.
-
In the Standard reason field, select a predefined reason.
NOTE: If you have made several approval decisions, the reason you enter or select here applies to them all.
NOTE: You have the option of selecting a predefined text for all cases still to be approved using the Standard reason menu. Standard reasons are displayed in the approval history and in the case details. For more detailed information about default reasons, see the One Identity Manager Attestation Administration Guide.
-
If you have made several approval decisions and want to provide separate reasons for each, click Enter a reason. in the list next to the approval, enter a reason in the Approval reasons field or select a Standard reason from the list of reason and lick Close.
-
Click Save.
-
In the Pending attestation cases dialog, confirm the prompt with Yes.
-
If the attestation policy requires multi-factor authentication, you are prompted to enter a security code. It may take a few minutes for the prompt to be displayed. Perform one of the following tasks:
For more information, see Requesting a Starling 2FA token.
Related topics
Application role history
Navigate to the History page through Responsibilities | My Responsibilities | One Identity Manager application roles | <application role> | History. For more information, see Displaying application role history.
On the History page, you can view all modifications to the application roles that you manage. The information is divided out on to three tabs:
-
Events: Shows all the events, which affect an application role, on either a timeline or in a table.
-
Status overview: Shows a list of modified properties with the validity time period and corresponding date of change.
-
Status comparison: Shows a comparison between the current and the selected point in time.
The following tables give you an overview of the different functions on the History page.
Table 69: History of an application role
Events |
|
Change type |
Shows the type of change. |
|
Property |
Shows the type of the modified object. |
|
Display |
Shows the name of the modified object. |
|
Date |
Shows the date the change was made. |
|
User |
Shows the user that made the change. |
Status overview |
|
Display |
Shows the type of change. |
|
Property |
Shows the type of the modified object. |
|
Value |
Shows the name of the modified object. |
|
Run started |
Shows the start date of the validity period. |
|
End |
Shows the end date of the validity period. |
Status comparison |
|
Modified |
Show whether the change took place or not. |
|
Change type |
Shows the type of change. |
|
Object type |
Shows the type of the modified object. |
|
Property |
Shows the name of the modified object. |
|
Historical value |
Shows the value be the modification. |
|
Current value |
Show the current value. |
Related topics
Displaying application role history
You can view the history of an application role at any time.
To show the history of an application role
-
In the menu bar, click Responsibilities | My Responsibilities.
-
On the My Responsibilities page, click the One Identity Manager application roles tile.
-
On the One Identity Manager application roles page, in the list, select the application role whose risk index you want to show.
-
On the <application role name> (Application role), click the History tile.
This opens the History page and displays the timeline. For more information, see Application role history.
TIP: To navigate along the timeline, click in the pane and move the mouse left or right whilst holding down the left button.
To zoom in or out, turn the mouse wheel.
To filter the timeline by a particular event
-
On the History page, click Filter by... and select one of the following entries:
User |
Searches for events or actions associated with the given name.
Employees with entitlements and ownerships create changes, such as adding or removing properties. You can view these actions on the timeline. |
Change type |
Lists all changes types, which can be selected for displaying in the timeline.
Multi-select is possible. |
Date |
List all actions and events for the selected date. |
Property |
Lists all properties, which can be selected for displaying in the timeline.
Multi-select is possible. |
Display |
Searches for all text data matching the given search term.
The following settings are available.
-
All words
-
Starts with...
-
Ends with...
-
One or more words |
-
Apply the selected filter with Filter on.
To display the history as a table
To display a list of modified properties with their validity period and dates when they were changed.
To compare the current status of an object with a date in the past
-
On the History page, switch to the Status comparison tab.
-
On the Status comparison tab, enter the start date of the comparison.
Related topics