Mismatched role assignments
Purpose: Lists roles per user where the user has been assigned the role and has some or all of the entitlements, but the correct information is not reflected in the Bravura Security Fabric database. For example, a user is assigned a role that includes only template accounts. A managed group is later added to the role, and the user is added to the group out of band. In this case the user meets the role requirements, but the database does not contain correct information.
Executable: mismatchedrole
Criteria | Description |
---|---|
Reference role | The roles to show surpluses or deficiencies for. |
Show mismatch based on expanded role definitions | The mismatched items are expanded on sub-roles to display deficient and surplus entitlements. |