Refresh Logical Accounts
The Refresh Logical Accounts task type is used to refresh composite accounts for all identities that could, potentially, have a logical account on the applications selected. This refresh occurs without performing aggregation on the logical or tiered applications containing the links.
A logical account rule is run on each identity that has a logical link, or a link on the primary tier application of the logical application. If no primary tier has been defined, the rule is run on all identities that have an account on any of the tier applications.
The information scanned and updated is determined by the following criteria when the task is created or edited. You can use any combination of options to build a task.
Option |
Description |
Logical Applications |
Select composite applications to refresh from the dropdown list. |
Refresh identities whose last refresh date is before this date |
Refresh any identities that have not been refreshed since the date entered. Enter and date manually or click the [...] icon to display the calendar view. |
Refresh all application account attributes |
Perform an aggregation of identity information on each application and update the account attributes on each identity as required. Selecting this attribute initiates a full application aggregation for each identity included in this task. This might impact the performance of IdentityIQ. |
Refresh identity attributes |
Update identity cubes with any changes made to the attributes used to define identities. |
Refresh manager status |
Update all identity cubes in which the manager status has changed. For example, if a user was promoted to manager in their department, their identity cube would be updated by this task. |
Refresh the identity risk scorecards |
Update Identity Risk Scores with any information discovered by the scan performed by this task. |
Maintain identity histories |
Update the identity history by creating a snapshot of any identities with information that has changed since the last refresh. |
Refresh the group scorecards |
Update Group Risk Scores with any information discovered by the scan performed by this task. |
Apply all active policies |
Scan for active policies and apply those policies to the identities included in the task. |
A comma separated list of specific policy names. When set this overrides the default policies |
Scan for and apply only those policies included in this list to the identities included in the task. |
Number of Refresh Threads |
Number of threads to use simultaneously while running this task. |