Skip to main content

Policies reports

User class errors

Purpose: Lists user class configuration error; for example, where a PSLang expression could not be evaluated.

Executable: ucerrors

Table 1. User class errors report search criteria

Criteria

Description

User class ID

Type the User class ID to list its information.

Policies where the user class can be referenced

Select one or more user class policy points to include in the report. All user class policy points are included by default.

Display errors only

Select this checkbox to display errors only.



User class members

Purpose: Lists membership in single participant user classes. Relational user classes are not included.

Executable: ucmember

Table 2. User class members report search criteria

Criteria

Description

Single-participant user classes

Select one or more single-participant user classes. All single-participant user classes are included by default.

Policies where the user class can be referenced

Select one or more user class policy points to include in the report. All user class policy points are included by default.

Do not display built-in user classes

Enable this checkbox to exclude built-in user classes, which are hard-coded. For example, _USER_IS_MANAGER_ is built-in.

Summarize report

Select this checkbox to summarize the report details.

Minimum number of user class members

The minimum number of user class members allowed to display. This option will only display when Summarize report is selected.

Maximum number of user class members

The maximum number of user class members allowed to display. This option will only display when Summarize report is selected.



User classes

Purpose: Lists configuration, use and cache status of user classes.

Executable: userclasses

Table 3. User classes report search criteria

Criteria

Description

User class ID

Type the User class ID to list its information.

Policies where the user class can be referenced

Select one or more user class policy points to include in the report. All user class policy points are included by default.

Date user class created

(Optional) Choose a date range for the user class creation.



User access privileges

Purpose: Security privileges granted to users.

Executable: userpriv

Table 4. User access privileges report search criteria

Criteria

Description

Requester ID

Type the ID of the user whose privileges you want listed. Alternatively, you can search for one or more profile IDs.

Allowed privileges

Select one or more privileges to display. All privileges are included by default.

Rules

Select which set of user access rules to generate the report for:

  • Global help desk rules

  • Self-service rules

  • Delegated administration rules: You must enter the profile ID of the Recipient.

Recipient

Type the profile ID of the recipient for whom you want to run the report.



Entitlement review privileges

Purpose: The link between reviewers and users they are allowed to review.

Executable: adhoccertificationprivileges

Table 5. Entitlement review privileges

Criteria

Description

Options

Select to:

  • List reviewers for selected users

  • List users who can be reviewed by selected reviewers

Users to be reviewed

This option is displayed if List reviewers for selected users is selected. Type a comma and space delimited list of user profile IDs to list the possible reviewers for these users. Alternatively, you can search for one or more user profile IDs

Reviewer ID

The option is displayed List users who can be reviewed by selected reviewers is selected. Type a comma and space delimited list of reviewers’ profile IDs to list the users who can be reviewed by these reviewers.



Authentication chains

Purpose: Authentication chains configuration and usage statistics. Lists the results (successes and failures) of authentication chains.

Executable: authchain

Table 6. Authentication chains report search criteria

Criteria

Description

Authentication chain

Select one or more authentication chains to include in the report.

Status

Select the authentication chain status to include in the report:

  • (All): authentication chains are included in the report regardless of their status

  • Success: authentication chains are only included in the report if they have "Success" status

  • Failure: authentication chains are only included in the report if they have "Failure" status

User ID

Type the profile ID of the user for whom you want to generate the report. By default, all users are included. Alternatively, you can search for one or more profile IDs.

Choose relative date

(Optional) Choose a date range for authentication chain initiation.

Show detailed report

Select this checkbox to display additional report details.

Graph type

Select the graph type:

  • (None): No graph generated

  • Vertical bar chart: bar chart will be generated

  • This option is only shown when Show detailed report is not checked.



Policy configuration

Purpose: Displays the policy configuration stored in the external database.

Executable: dumppolicyconfiguration

Table 7. Policy configuration report search criteria

Criteria

Description

Table

Choose a table in the external database.

Format

Choose:

  • Tabular: Display the report in a table format.

  • Transposed: Display the report as a list of key-value pairs.

Omit Blank

Choose "Yes" to omit blank rows/columns.



Question set configuration

Purpose: Provides information on pre-defined question sets, question set usage, and users who have populated question sets.

Executable: questionsetinformation

Table 8. Question set configuration report search criteria

Criteria

Description

Report type

Select:

  • List question sets

  • Question set usage summary

  • Question usage details

  • Users with answers to question sets

Question set

List all enabled pre-defined question sets.

Question status

List all question statuses (Answered and/or Unanswered). This option is only shown when Question usage details is selected.

User ID

For reports on users with answers to question sets, type the profile ID of the user for whom you want to generate the report. By default, all users are included. Alternatively, you can search for one or more profile IDs.

Graph type

Select the graph type:

  • (None): No graph generated

  • Horizontal bar chart: bar chart will be generated

This option is only shown when Question usage summary is selected.

Number of rows for graph

The maximum rows for graph to display. The selected rows will be displayed with the number of questions in descending order.



Explicit user class members

Purpose: Track when a user class membership (explicit users) is added/removed.

Executable: usersexplicit

Criteria

Description

User class ID

Type the User class ID to list its information.

User ID

Type the profile ID of the user for whom you want to generate the report. By default, all users are included. Alternatively, you can search for one or more profile IDs.

Operations on explicit users

Choose the operation type for explicit user class members:

  • Add explicit user as the user class member (UMAD).

  • Delete explicit user as the user class member (UMDE).

Added/deleted in last N days

Specify a certain number of past days for the report to search within.

User class overlap

Purpose: Identifies user classes with overlapping user populations.

Executable: userclassoverlap

Table 9. User class overlap report search criteria

Criteria

Description

Compare these user classes

Type the user class ID or a comma-and-space-delimited list of user class IDs for which you want to analyze the overlapping membership against all selected user classes to generate the report. You can not leave this box empty. Alternatively, you can search for one or more user class IDs.

… to these user classes

Type the user class ID or a comma-and-space-delimited list of user class IDs against which you want to compare to generate the report. By default, this box is empty and all user classes but the built-in ones are included. Alternatively, you can search for one or more user class IDs.

Overlap (%)

Type the overlap threshold that is used to add user classes to the output if their membership overlap meets or exceeds the threshold. Its range is 1-100 and by default it is set to 75%.