Prevent Reviewers from Approving Their Own Access Reviews in Identity Portal
search cancel

Prevent Reviewers from Approving Their Own Access Reviews in Identity Portal

book

Article ID: 143068

calendar_today

Updated On:

Products

CA Identity Manager CA Identity Governance CA Identity Portal CA Identity Suite

Issue/Introduction

By default, Identity Portal and Identity Governance allow reviewers to view and approve their own access reviews. To enforce segregation of duties and prevent self-approval, you must modify the property settings to explicitly restrict this capability.

Environment

Identity Portal 14.5 & 15

Identity Governance 14.5 & 15

Cause

This is the default system behavior. Access review settings must be updated to enable the certification.preventSelfApproval flag, which automatically excludes reviewers from their own certification items.

Resolution

  1. Log in to Identity Governance Administration UI.
  2. Navigate to Home > Administration > Settings > Property Settings.
  3. Search for the property: certification.preventSelfApproval.
  4. Modify the value from False to True.
  5. Save the setting to apply the restriction immediately.

Additional Information

To speak with a customer representative or a Support Engineer see Contact Support. Scroll to the bottom of the page and click on your respective region.