Role memberships of application role members
Navigate to the Usage page through Responsibilities | My Responsibilities | One Identity Manager application roles | <application role> | Usage. For more information, see Displaying role memberships.
On the Usage page, you can view which roles belongs to the members of application roles that you manage. The information is displayed as a hierarchical chart, which shows you more about the role inheritance.
The following tables give you an overview of the different functions on the Usage page.
Table 70: Controls
Role classes |
Use this list of roles to select what you want to view. |
More information |
Use this button to show the legend that explains the content of the overview. |
Related topics
Displaying role memberships
You can display which role belong to members of an application role.
To show usage of application roles
-
In the menu bar, click Responsibilities | My Responsibilities.
-
On the My Responsibilities page, click the One Identity Manager application roles tile.
-
On the One Identity Manager application roles page, in the list, select the application role whose usage you want to show.
-
On the <application role name> (Application role), click the Usage tile.
-
On the Usage - <application role name> (Application role), in the Role classes list, select the main category of the role you want to show.
This displays the role class overview.
TIP: To show the legend that explains the content of the overview, click More information.
-
(Optional) In the overview, click on an object to show the sub-objects.
Related topics
Compliance reports of application roles
Navigate to the Compliance reports page through Responsibilities | My Responsibilities | One Identity Manager application roles | <application role> | Compliance reports. For more information, see Displaying compliance reports of application roles.
On the Compliance reports page, you can view compliance reports of application roles that you manage. The data is divided between three menus:
-
Policy violations: Shows all current rule violations that have been caused by the application role.
-
Compliance rule violations: Shows all the current rule violations of application role members.
-
Members: Risk indexes and entitlements: Shows all primary and secondary assigned members of the application role. The member's assigned entitlements and risk indexes are displayed in the same way.
Use the View list to open the menus.
The following tables give you an overview of the different functions on the Compliance reports page.
Table 71: Compliance reports of an application role
Policy violations |
|
Violating object |
Show which object caused the rule violation. |
|
Policy |
Show the policy that was violated. |
|
Status |
Show the status of the rule policy. |
Compliance rule violations |
|
Employee |
Shows the employee who caused the violation. |
|
Rule violation |
Shows the violated rule. |
|
Approval state |
Shows how or whether approval is granted to the rule violation. |
|
Risk index (reduced) |
Shows the risk index taking mitigating controls into account. A rule’s risk index can be reduced by a significance amount after mitigating controls have been applied.
Mitigating controls are processes that exist outside the One Identity Manager solution and that reduce the risk of violation. For more information, see Governance administration. |
Members: Risk indexes and entitlements |
|
Employee |
Show the employees who are assigned to the application role. |
|
Risk index (calculated) |
Shows you the employee's calculated risk index. |
|
Assigned permissions |
Shows all the entitlements assigned to this employee. |
Related topics
Displaying compliance reports of application roles
You can view an application role's compliance reports at any time.
To displaying compliance reports of application roles
-
In the menu bar, click Responsibilities | My Responsibilities.
-
On the My Responsibilities page, click the One Identity Manager application roles tile.
-
On the One Identity Manager application roles page, in the list, select the application role whose compliance reports you want to show.
-
On the <application role name> (Application role), click the Compliance reports tile.
-
On the Compliance reports page, in the View list, select one of the following entries:
-
Policy violations: Shows all current rule violations that have been caused by the application role.
-
Compliance rule violations: Shows all the current rule violations of application role members.
-
Members: Risk indexes and entitlements: Shows all primary and secondary assigned members of the object type or the company structure. The member's assigned entitlements and risk indexes are displayed in the same way.
For more information, see Compliance reports of application roles.
Related topics