SAILPOINT-CERTIFIED-IDENTITYIQ-ENGINEER · Question #114
A client wants users who belong to an IdentitylQ workgroup named Management to be able to request entitlements and roles, but only for other users whose location attribute is the same as theirs. Is…
The correct answer is B. No. The provided solution does not fulfill the client's requirement. Setting "Who can members request for?" to "report to the requester" only limits the request scope to users who directly report to the requester, which does not account for the location attribute. The goal is to…
Question
A client wants users who belong to an IdentitylQ workgroup named Management to be able to request entitlements and roles, but only for other users whose location attribute is the same as theirs. Is this a population that will achieve the goal? Solution: Create a quicklink population, set the membership match list to the IdentitylQ workgroup "Management," and set "Who can members request for?" as report to the requester.
Options
- AYes
- BNo
How the community answered
(33 responses)- A27% (9)
- B73% (24)
Explanation
The provided solution does not fulfill the client's requirement. Setting "Who can members request for?" to "report to the requester" only limits the request scope to users who directly report to the requester, which does not account for the location attribute. The goal is to restrict requests based on the location attribute, and this specific configuration does not consider that attribute. To achieve the desired behavior, the configuration should include logic that filters users based on the same location as the requester. SailPoint IdentityIQ Advanced Population Management Guide
Topics
Community Discussion
No community discussion yet for this question.