Scheduling Access Reviews
Access certification may implemented as a one-off process or repeated periodically, to ensure that user rights do not accumulate inappropriately.
Hitachi ID Access Certifier supports scheduled access certification as follows:
- The configuration of a certification round is defined using the Access Certifier administration web UI. This includes a list of the entitlements which will be reviewed, an indication of how certifiers will be chosen (i.e., single, multiple, resource owners or managers) and what user profile information will be displayed, by default.
- The configuration of a certification round is given a unique name and saved.
- A scheduler (Windows Scheduler, cron, a 3rd party scheduler, etc.) is used to invoke the certification round periodically. An API function is accessed using SOAP or with a command-line program to initiate a named certification round.