The user has been configured to have "Standard User" Role and "Auditor" Credential Manager Group. The intention is to show the past approved/denied request by this user itself. Which Credential Manager Role/Privileges should be added to see the request list that the login user applied/denied?
Environment
Release: Component: CAPAMX
Resolution
When we add "List Password View Request Summary By Requestor" privilege only to Credential Manager Role,
The following menu selection shown up under Credentials menu.
Credentials menu unexpectedly shows Manager Targets menu item (Target account and Target application menu). If the user selects them, the following error occurs.
Error: PAM-UI-1005: Authorization failed. User does not have permission for this action.
This "Manage Targets" menu item cosmetic issue is expected to be addressed in the future PAM releases.
Additionally, below privileges are needed to access the target server with dual authorization feature.
Get Password View Policy Get Target Account Get Target Application Get Target Server Search Password View Request by Approver Search Password View Request by Requester Search Target Account Search Target Application View Account Password