Main data - Location (page description)
To open the Main data - Location page go to Responsibilities > Governance Administration > Organization > Edit > Main data.
On the Main data - Location page you can view and edit the master data of the location (see Displaying and editing location main data).
The following tables give you an overview of the different functions and content on the Main data – Location page.
Table 899: Controls
Save |
Use this button to save the changes to the main data. |
You can change the following main data.
Table 900: Location main data
Location |
Enter a full, descriptive name for the location. |
Short name |
Enter a short name for the location. |
Name |
Enter an additional description for the location. |
Parent location |
Click Assign/Change and select a location to be the parent location for organizing the location hierarchically. If you want the location at the root of a location hierarchy, leave the field empty. |
Manager |
Click Assign/Change and select the manager responsible for the location. |
Deputy manager |
Click Assign/Change and select an identity to act as a deputy to the location's manager. |
Attestor |
Click Assign/Change and select an application role. Members of the selected application role can approve attestation cases for the location. |
Department |
Click Assign/Change and select the department the location is primarily assigned to. |
Cost center |
Click Assign/Change and select the cost center the location is primarily assigned to. |
Role approver |
Click Assign/Change and select an application role. Members of the selected application role can approve requests for members of the location. |
Role approver (IT) |
Click Assign/Change and select an application role. Members of the selected application role can approve requests for members of the location. |
Description |
Enter a description for the location. |
Memberships – Location (page description)
To open the Memberships – Location page go to Responsibilities > Governance Administration > Organization > Edit > Memberships.
On the Memberships – Location page, you can:
The following tables give you an overview of the different functions and content on the Memberships – Location page.
Table 901: Controls
Request memberships |
Use this button to request in the location assignment for identities (see Assigning identities to locations). |
Delete memberships |
You can use this button to delete the assignment to the location for selected identities (see Removing identities from locations).
Select the check boxes in front of the identities whose locations you want to delete and click this button. |
Table 902: Columns
Identity |
Shows you the name of the identity assigned to the location. |
Origin |
Shows you whether the location of the identity was assigned directly or indirectly. |
TIP: For each identity, you can see more useful information in the details pane. To do this, click the appropriate instance in the list. If the identity did not receive the membership through a direct assignment (for example, through an assignment request or delegation), the Request tab provides more information:
-
Information: Displays general information about a request. The information displayed varies and is dependent on the service category from which the request was triggered.
-
Workflow: Displays the life cycle chronologically as from the time of request.
-
Compliance: Displays possible rule violations for this request.
-
Entitlements: Show which entitlement are assigned to the role (if a role was requested).
TIP: You can show less data by using the column filters. For more information, see Filtering.
Entitlements – Location (page description)
To open the Entitlements - Location page go to Responsibilities > Governance Administration > Organization > Edit > Entitlements.
On the Entitlements – Location page, you can:
TIP: Entitlements form the basis for membership in an object (for example in a department).
The following tables give you an overview of the various features and content on the Entitlements – Location page.
Table 904: Columns
Entitlement |
Shows you the entitlement's name. |
Origin |
Shows you how the entitlement was assigned. For example, the entitlement might have been assigned through a dynamic role. |
Entitlement type |
Shows you the entitlement type (for example, report subscriptions, account definition, resources). |
TIP: You can show less data by using the column filters. For more information, see Filtering.
Compliance – Location (page description)
To open the Compliance - Location page go to Responsibilities > Governance Administration > Locations > Edit > Compliance.
On the Compliance – Location page, you can see the rule violations caused by the location (see Displaying location rule violations).
The following table gives an overview of the different content on the Compliance – Location page.
Table 905: Columns
Entitlement |
Shows the entitlement that caused the rule violation. |
Rule |
Shows the rule that was violated. |
Risk index |
Shows the severity of the rule violation (meaning the calculated risk index). The higher this value is, the higher the risk that this rule violation poses. |
Risk index (reduced) |
Shows the risk index taking mitigating controls into account. A rule’s risk index can be reduced by a significance amount after mitigating controls have been applied.
Mitigating controls are processes that exist outside the One Identity Manager solution and that reduce the risk of violation. For more information, see Compliance – Governance Administration. |
TIP: On the following tabs, you can show other useful information about each rule violation in the pane. To do this, click the corresponding entry in the list.
TIP: You can show less data by using the column filters. For more information, see Filtering.