Create Entitlement Review workflow options

Use the dialog to create an instance of an Entitlement Review workflow. You can view the summary of the options you select in the right-hand panel of the page.

Table: Create Entitlement Review workflow

Option

Description

Workflow Information

Enter information in the following fields:

  • Name - Enter a logical name for the workflow.

  • Description - Enter a short description for the workflow.

    Workflow Type - Describes the type of workflow.

    Template - Select the template you want to use for creating the workflow.

    See About workflow templates.

  • Portal Node for Execution - From the drop-down, select the Self-Service Portal node to which you want to submit the workflow.

  • Click Test portal connection to test the availability of SMTP connection to the Self-Service Portal.

    Enter the email IDs of the recipients of the workflow request, and click Test. You will see a response from the SMTP server if the connection to the Portal node succeeds.

  • Action - Select Apply configured permission remediation action automatically to let Data Insight automatically take the configured actions by a remediation workflow. To avail this feature, you must first configure Data Insight for permission remediation.

  • Schedule - Select the start and the end date for completing the workflow.

Data Selection

Do the following:

  1. Select the Physical radio button to view the configured file servers or SharePoint web applications. Or, select the DFS radio button to view the configured DFS paths in a domain.

  2. From the Resource Selection drop-down, select one of the following options:

    • Physical or DFS paths - Select the physical or DFS paths for which you want to review the user permissions.

    • Opens Shares - Select the open shares that need to be remediated.

    • Containers - Select configured containers. Data Insight presents the paths in the containers to remediate user permissions.

    • Enter paths manually - Enter the full path that you want to remediate.

    • Upload CSV - Browse to the location of the .csv file that contains the paths that you want to remediate. Only valid paths in the .csv file are displayed in the Selected Resources pane.

    • Select paths having custodians - Data Insight retrieves only the list of paths that have custodian assignments. Select the paths from the list.

The selected data set is listed in the Selected Resources pane.

Note:

Data Insight does not support NFS for the Entitlement Review workflows. If you select a container which contains NFS paths, then those paths will not be sent to the custodian for review.

Resource-Custodian Selection

This panel displays the following:

  • The paths that you select under the Data Selection tab.

  • The paths for which custodians are already assigned and those paths for which custodians are not assigned.

  • The email address of the custodian.

    Data Insight displays the email address only if you have added the email custom attribute, and have also marked the attribute as email alias when you add the directory service.

You can assign custodians on paths or remove already assigned custodians. For example:

  • Click Import Custodian to assign custodian to a selected path. Select any of the following options:

    • Upload a .csv file with custodian information.

    • Select a user who is configured in Data Insight as the custodian.

    • Select a Data Insight suggested data owner as the custodian.

    • Select a custom attribute of a Data Insight suggested data owner and assign it as a custodian. For example, you can select the manager of a user who is a suggested data owner as the custodian.

  • Click Assign Custodian to manually assign the custodian for a selected path. Use the domain filter to filter the users based on their directory domains.

  • Click Remove Custodian to remove a custodian from a selected path.

  • Click Delete Paths to remove the selected paths.

Exclusion List

Select the groups or users that you want to exclude from the scope of the review. Click the group or user to select it. The selected data set is listed in the Selected Groups/Users panel. Once you have excluded a user or a group, the activities of the user or the group on the paths will be ignored and thus will not be considered for the review.