Updating group options
To configure a managed group using the Manage the system (PSA) module:
Navigate to the Managed group information page for the group.
Set options and variables as detailed in the table below.
Click Update.
Option
Description
Overridden description
The description to display to users.
If you leave this field blank, Bravura Security Fabric uses the Group description loaded from the target system.
Help URL
In case a longer description would help users, you can compose and post a web page that describes this group further, and enter its URL here. Users can open the URL by clicking the group description text wherever the text appears in the user interface.
Track changes
Select this checkbox to capture changes to this managed group. Changes include joining or leaving the group.
See Tracking changes to group membership for details.
Detect out-of-band additions and automatically generate a workflow request
If enabled, then additions of users or groups that were done without using Bravura Security Fabric are detected, and requests are automatically generated to undo or redo the change via the Workflow Manager Service (
idwfm
).The Track changes setting must also be enabled.
See Tracking changes to group membership for details.
Detect out-of-band deletions and automatically generate a workflow request
If enabled, then deletions of users or groups that were done without using Bravura Security Fabric are detected, and requests are automatically generated to undo or redo the change via the Workflow Manager Service (
idwfm
).The Track changes setting must also be enabled.
See Tracking changes to group membership for details.
Automatically add group owners as authorizers
Select this checkbox to automatically add group owners as authorizers for the group. If the group owner is a group, its group members must be listed before they can be added as authorizers.
See Managing groups automatically for more information.
Override authorization configuration
Determine whether to inherit authorization configuration from the target system, specify group-specific authorizers, or a combination of both.
See Inheriting authorization configuration from the target system for details.
Override implementation configuration
Determine whether to inherit implementation configuration from the target system, specify group-specific implementers, or a combination of both.
See Inheriting resource operation configuration from the target system for details.
Minimum number of authorizers
(Required) The number of authorizers who must approve requests related to this group.
See Determining number of required approvals for details.
Number of denials before a change request is terminated
(Required) A resource request is canceled when this number of authorizers deny it.
See Determining number of required approvals for details.