"Entitlement Roles" exist for which use case?

Which IIQ version are you inquiring about?

Version 8.3

Please share any images or screenshots, if relevant.

2023-12-20 16_09_48-SailPoint IdentityIQ - Rollen-Management – Mozilla Firefox.png

Share all details related to your problem, including any error messages you may have received.

Yesterday I discovered the existance of “entitlement roles”, not to be confused with “entitlement”. I was successfull in creating one, see screenshot. And I found minimal documentation about it in the manual.
We know and use organizational roles, business roles, it roles and entitlements.
I don’t understand in which cases these “entitlement roles” should or could be used and which advantages they have. Or is it a dead end and should be left alone?

There is a standard official task to generate an entitlement role for every entitlement.
https://documentation.sailpoint.com/identityiq/help/tasks/entitlement_role_generat.html
When and why would I use this?

Thanks for any hints.

This is leftover from previous versions. In early versions of IIQ the ManagedAttribute object was not as complex as it is right now therefore ther was no way to store any additional data in this object like owner, scope or any custom attribute you need. Therefore Entitlement role type was dedicated to create a mirror of entitlements and be able to store additional information about this object. But since ManagedAttribute is fully configurable this role type is not needed anymore.

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.