Chat now with support
Chat with Support

Identity Manager 9.0 LTS - Attestation Administration Guide

Attestation and recertification
One Identity Manager users for attestation Attestation base data Attestation types Attestation procedure Attestation schedules Compliance frameworks Chief approval team Attestation policy owners Standard reasons for attestation Attestation policies Sample attestation Grouping attestation policies Custom mail templates for notifications Suspending attestation
Approval processes for attestation cases
Approval policies for attestations Approval workflow for attestations Selecting attestors Setting up multi-factor authentication for attestation Prevent attestation by employee awaiting attestation Attestation by peer group analysis Managing attestation cases
Attestation sequence Default attestation and withdrawal of entitlements User attestation and recertification Mitigating controls Setting up attestation in a separate database Configuration parameters for attestation

Creating and editing policy collections

To run different attestations together, create a policy collection and assign it to all the attestation policies that you want to start collectively.

To delete a policy collection

  1. In the Manager, select the Attestation > Policy collections category.

  2. Click in the result list.

  3. Edit the main data of the policy collection.

  4. Save the changes.

To edit a policy collection

  1. In the Manager, select the Attestation > Policy collections category.

  2. In the result list, select the policy collection and run the Change main data task.

  3. Edit the main data of the policy collection.

  4. Save the changes.
Detailed information about this topic

General main data of policy collections

Enter the following main data for a policy collection.

Table 14: General main data of a policy collection

Property

Description

Policy collection

Name of the policy collection.

Description

Text field for additional explanation.

Owners

The policy collection owner. The name of the user logged in to One Identity Manager is entered here by default. This can be changed.

Owner (Application Role)

Application role whose members can edit the policy collection.

To create a new application role, click . Enter the application role name and assign a parent application role.

Sample

Sample that can be used for attestations. A sample can only be assigned to only one policy collection. It is transferred to all related attestation policies.

To create a new sample, click . Enter the name of the sample and assign the table from which to take the data for the sample.

Calculation schedule

Schedule for running attestation. Attestation cases are started automatically at the times specified by the schedule.

Disabled

Specifies whether the policy collection is disabled.

If the option is enabled, all associated attestation policies are disabled. Thus, no attestations are carried out on the policy collection.

Related topics

Assigning policy collections to attestation policies

To group attestation policies together, assign a policy collection to the attestation policies. An attestation policy can be assigned to only one policy collection.

To assign a policy collection to an attestation policy

  1. In the Manager, select the Attestation > Attestation policies category.

  2. Select the attestation policy in the result list and run the Change main data task.

  3. Select the policy collection from the Policy collection menu.

  4. Save the changes.
Related topics

Disabling policy collections

To prevent attestations being run for a policy collection, you can disable the policy collection. This also disables all associated attestation policies and deletes their attestation cases.

To disable a policy collection

  1. In the Manager, select the Attestation > Policy collections category.

  2. In the result list, select the policy collection and run the Change main data task.

  3. Set Disabled.

  4. Save the changes.
Detailed information about this topic
Related Documents

The document was helpful.

Select Rating

I easily found the information I needed.

Select Rating