Identity Effective Access Live Report
This report lists all entitlements, including account group memberships, found for identities meeting the filter criteria specified. When an entitlement is encapsulated in a detected role and / or is granted to the user based on an assigned role, the associated roles are also shown on the report row for that entitlement.
This report can be filtered to include entitlements for a subset of identities based on values specified for core identity attributes, extended identity attributes, and extended properties of identities such as the capabilities assigned to them, and the groups to which they belong. If one or more applications are selected, only accounts on those applications are included in the report.
The detailed results of this report can be exported to a CSV or PDF file.
The Identity Effective Access Live Report consists of the following sections:
-
Identity Attributes
-
Identity Extended Attributes
-
Additional Identity Properties
All reports use a set of standard properties for basic information such as naming and descriptions, and for setting controls, such as scoping and requiring sign-off.
You must enter the following before running this report:
-
Name
For step by step instructions on creating or editing a report, see Working With Reports
Identity Attributes
The following criteria determines what information is included in this report. You can use any combination of options to build a report.
Option |
Description |
First Name |
Input the first name of the identity you wish the report to include. For example, if you input "John" in the field, the report includes information on identities whose first name is John. |
Last Name |
Input the last name of the identity you wish the report to include. For example, if you input "Smith" in the field, the report includes information on identities whose last name is Smith. |
Display Name |
Input the display name of the identity you wish the report to include. For example, if you input "John_Smith" in the field, the report includes information on identities whose display name is John_Smith. |
|
Input the email address of the identity you wish the report to include. For example, if you input "John@email.com" in the field, the report includes information on identities whose email address is name is John@email.com. |
Manager |
The manager list to include in this report. Only users who report to the selected managers are included in the report. |
Inactive |
Choose how the report handles inactive identities. Select No selection to include both inactive and active identities, True to include only inactive identities, or False to not include inactive identities. |
Identity Extended Attributes
You can use the identity extended attributes that have been defined for your installation as criteria for this report. Because these are custom-defined attributes, the specific criteria options you have here will be specific to your own installation of IdentityIQ. Any identity extended attributes defined as searchable or as multi-valued are included as possible filters for the report.
Additional Identity Properties
The following criteria determines what information is included in this report. You can use any combination of options to build a report.
Option |
Description |
Applications |
Select the applications to include in the report. If no applications are specified, all applications are included. |
Capabilities |
Select the capabilities to include in the report. |
Roles |
The roles to include in the report. |
Groups |
The groups or populations to include in the report. |
Last Refresh Date |
Select a date range to filter users based on when the user was last refreshed. |
Last Login Date |
Select a date range to filter users based on when the user was last logged in. |