Skip to main content

Updating group options

To configure a managed group using the Manage the system (PSA) module:

  1. Navigate to the Managed group information page for the group.

  2. Set options and variables as detailed in the table below.

  3. Click Update.

    Option

    Description

    Overridden description

    The description to display to users.

    If you leave this field blank, Bravura Security Fabric uses the Group description loaded from the target system.

    Help URL

    In case a longer description would help users, you can compose and post a web page that describes this group further, and enter its URL here. Users can open the URL by clicking the group description text wherever the text appears in the user interface.

    Track changes

    Select this checkbox to capture changes to this managed group. Changes include joining or leaving the group.

    See Tracking changes to group membership for details.

    Detect out-of-band additions and automatically generate a workflow request

    If enabled, then additions of users or groups that were done without using Bravura Security Fabric are detected, and requests are automatically generated to undo or redo the change via the Workflow Manager Service (idwfm).

    The Track changes setting must also be enabled.

    See Tracking changes to group membership for details.

    Detect out-of-band deletions and automatically generate a workflow request

    If enabled, then deletions of users or groups that were done without using Bravura Security Fabric are detected, and requests are automatically generated to undo or redo the change via the Workflow Manager Service (idwfm).

    The Track changes setting must also be enabled.

    See Tracking changes to group membership for details.

    Automatically add group owners as authorizers

    Select this checkbox to automatically add group owners as authorizers for the group. If the group owner is a group, its group members must be listed before they can be added as authorizers.

    See Managing groups automatically for more information.

    Override authorization configuration

    Determine whether to inherit authorization configuration from the target system, specify group-specific authorizers, or a combination of both.

    See Inheriting authorization configuration from the target system for details.

    Override implementation configuration

    Determine whether to inherit implementation configuration from the target system, specify group-specific implementers, or a combination of both.

    See Inheriting resource operation configuration from the target system for details.

    Minimum number of authorizers

    (Required) The number of authorizers who must approve requests related to this group.

    See Determining number of required approvals for details.

    Number of denials before a change request is terminated

    (Required) A resource request is canceled when this number of authorizers deny it.

    See Determining number of required approvals for details.