<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D54z00008mMV2kCAGOkta Identity EngineWorkflowsAnswered2024-04-17T10:32:19.000Z2023-02-15T08:07:28.000Z2023-02-15T17:54:29.000Z

mpnpc (mpnpc) asked a question.

Identity Governance - access certifications - certify user access roles

For identity governance, it looks like the functionality only enables access certifications for users and what application they have access to (resource). It doesn't look like it allows for the access certification to include the access permission/role that the user has within the application. I don't see any fields for the role and role description. Can someone confirm?


  • TimL.58332 (Workflows)

    @mpnpc (mpnpc)​ 

     

    "Entitlements" are available but it is currently limited to a small subset of applications. Take a look at:

     

    https://help.okta.com/oie/en-us/Content/Topics/identity-governance/access-certification/iga-ac-review-campaign.htm?cshid=csh-review-bp-reviewers#bp_reviewers

     

    For all other applications the tool is essentially for monitoring assignment/usage, and having the option to remove them from the app.

     

    The Okta Identity Governance (OIG) product is still fairly new, there is loads of work being done on it to improve and expand its capabilities. I suggest leveraging the https://ideas.okta.com to post a feature request. Make sure that the request is extremely detailed and clear on the ask. Like: This is what it does now (example). Here is what we would like to see (example mockup). The Ideas forum is heavily leveraged by the OIG & Workflows PM/Dev teams (I cannot speak for other groups as I don't have direct exposure to them but I am assuming its true there also).

    Expand Post
This question is closed.
Loading
Identity Governance - access certifications - certify user access roles