지금 지원 담당자와 채팅
지원 담당자와 채팅

Starling Governance Access Certification Hosted - Integration Guide

Additional hardware and software requirements

Access Certification has additional requirements beyond those necessary for Starling overall (for more information, see the Starling User Guide).

Table 3: Access Certification requirements

One IdentitySafeguard for Privileged Passwords with Hybrid subscription (all fully supported versions after 2.5 are eligible to use Access Certification)

See the Safeguard for Privileged Passwords documentation for more information. You will also need to be familiar with the One Identity Safeguard PowerShell scripting resources.

Active Directory domain added to Safeguard for Privileged Passwords

Must include the following:

  • User email addresses
  • Users have a manager set
  • Groups have managedBy set
  • Users must have been added to Safeguard for Privileged Passwords by adding directory user groups. These directory groups must be used when assigning users to entitlements.

ActiveDirectory PowerShell module installed

Remote Server Administration Tools (RSAT) installed and enabled.

Using the Access Certification service

To navigate through the service use the title bar along the top of the site, which contains the following links:

  • : If multiple organizations are associated with your account, this button (displaying the name of the organization you are currently viewing) appears and opens a drop-down menu that allows you to move between organizations.
  • : This button (displaying the first name of the account owner) opens a drop-down menu that allows you to select one of the following options:
    • My Services: Clicking this link takes you to the One Identity Starling home page.
    • Sign out: Clicking this link signs you out of One Identity Starling.
  • : This button opens a dialog displaying notifications.
  • : This button opens the Access Certification documentation site.
  • : This button opens the Settings page where you can manage your entire Starling account. For information on these settings, see the Starling User Guide.

The main pages available within Access Certification are listed in the navigation bar, which is located directly beneath the title bar:

  • Campaigns: This is the home page of Access Certification and provides access to your campaigns.
  • Data: The Data Imports page is where you upload Safeguard for Privileged Passwords data so that it can be used in a campaign. You must upload data before you can run a campaign.
  • Collaborators: This page is used to manage the administrators and approvers within you Access Certification service.
  • My Approvals: This page is visible to approvers and provides them access to the campaigns that have been run that need to be reviewed. Users that are only assigned the approver role will only have access to this page within Access Certification. Administrators that are not also assigned the approver role will not have access to this page.

Inviting an administrator to a service

The following procedure applies to organization administrators. It is designed to allow additional administrators to be added and to allow a new administrator to be invited to a service in cases where the last administrator assigned to that service has left the organization.

To invite an administrator to a service

  1. From the Starling home page, click the button associated with the service to which you want to invite a new administrator.
  2. Select Invite Administrator.
  3. Depending on the type of account, the following methods can be used for inviting a new administrator to the service:
    • To invite an administrator:
      1. Enter the name and email address of the user.
      2. Click Invite. An invitation to the service will be sent to the user.
    • To invite an administrator with an Azure AD work account:

      NOTE: This option is only available for organization administrators with an Azure AD work account.

      1. Click the drop-down menu field.
      2. In the blank search box, begin typing the name of the user. When you have located the user, select them from the list.
      3. Click Invite. An invitation to the service will be sent to the user.

Ending a service preview

When you no longer want access to a service available for preview, you can remove the service from your organization and delete all data associated with it. You must be an administrator to remove a service from an organization.

To end a service preview

CAUTION: The Access Certification technical preview is concluding, so new subscriptions are no longer available. Ending a preview will permanently delete all data associated with that service and Access Certification cannot be resubscribed to.

  1. Sign in to Starling.
  2. From the home page, locate the service you want to stop previewing and click the button associated with it.
  3. Click End Preview.
  4. On the warning dialog, click OK to end the preview and delete all data associated with the service.
관련 문서

The document was helpful.

평가 결과 선택

I easily found the information I needed.

평가 결과 선택