How to onboard the inherited roles and change them to IIQ assigned

Which IIQ version are you inquiring about?

8.4

Hello Everyone,

I have a target application where users are assigned a set of entitlements or ACLs because they belong to a specific Organizational Unit (OU). The assignment of these specific ACLs occurs for everyone within the OU.

Now, I want to manage all provisioning automatically with IIQ. I aim to convert all inherited access to directly assigned access in IIQ or modify the role model so that inherited roles are reflected in IIQ.

I would appreciate your advice on how to proceed with this restructuring. To start, I have gathered a report of all inherited roles, but I am unsure of the next steps.

You can use IIQ’s two-tier role model.

  • Create IT role with required entitlements.
  • Create Business role where you place your automated logic and have IT role as required role.
    Reference: IdentityIQ's Two-Tier Role Model
1 Like