Attestations are run when the schedule assigned to an attestation policy is enabled. You can disabled attestation policies to prevent attestation cases being created for individual attestation policies.
IMPORTANT: All associated attestation cases are deleted. To be able to trace the changes later, configure how the data is logged. For more information, see Deleting attestation cases and the One Identity Manager Configuration Guide.
TIP: Numerous default attestation policies are supplied with One Identity Manager. Check which of the default attestation policies are relevant for your data situation when you set up your database. Disable all unnecessary attestation policies.
To disable an attestation policy
-
In the Manager, select the Attestation > Attestation policies category.
-
Select the attestation policy in the result list and run the Change main data task.
-
Set Disabled.
- Save the changes.
Sample attestation provides a way to limit the set of attestation objects for an attestation. For example, this can be useful if attesting everyone in an audit would take too long. The sampling data can either be generated automatically or compiled manually.
The One Identity Manager provides a standard sample that is used to attest memberships in system entitlements after organizational changes.
Detailed information about this topic
To be prepare sample attestations:
To create a sample
-
In the Manager, select the Attestation > Samples category.
-
Click in the result list.
-
Edit the sample's main data.
- Save the changes.
To edit a sample
-
In the Manager, select the Attestation > Samples category.
-
In the result list, select the sample and run the Change main data task.
-
Edit the sample's main data.
- Save the changes.
To delete a sample
-
In the Manager, select the Attestation > Samples category.
-
In the result list, select the sample and click .
- Confirm the security prompt with Yes.
Detailed information about this topic
Enter the following main data of a sample.
Table 12: General main data of a sample
Display name |
Name of the sample. |
Table |
Table that contains the selected sampling data. |
Manually selected |
Specifies whether the sampling data is manually selected. |
Remove items after attestation run |
Specifies whether the sampling data is deleted from the sample after each attestation run.
After each attestation of this sample, the sampling data must be regenerated.
The option is not taken into account when attesting individually selected objects. |