Skip to main content

Role Enforcement

Bravura Security Fabric supports RBAC with role enforcement, to ensure that users have the correct access to specified resources. The role enforcement feature works with the following software:

Software

Purpose

View and update profile (IDR) module

Allows users to request missing entitlements or request exceptions for themselves or for other users.

Workflow Manager Service

Handles requests to remove resources, or for SoD exceptions. The requests can be auto-approved or reviewed by authorizers.

rbacenforce

Lists users who are in deficit for a role, and either adds resources or requests exceptions.

You cannot enable role enforcement and automatic assignment at the same time for managed groups.