Approve user requests | EPM-WM Cloud
In the user request workflow, you can restrict access to application requests. On an approved request, EPM-WM users with the Manage Request role can set a duration in the ticket. The duration is the length of time the user can use the application before the approval automatically expires.
To manage JIT access requests, you need one of the following:
- Administrator or Request Manager role
- Manage Application Access Requests permission (application requests)
- Manage Admin Access Requests permission (admin requests)
For more information, see User management.
After the time expires, the user can no longer access that application. The user must go through the request workflow again, with the EPM-WM users with the Manage Request role approving and selecting a duration time for access.
Turn on notifications to receive an alert when a request is ready for you to review. In-app and email alerts are available.
To approve a user request:
- Select Just-In-Time (JIT) Access Management from the main menu.
- Select the Application Access Requests tab or Admin Access Requests tab.
- Locate the request in the list, and then select Approve Request from the menu.
- Select a duration.
- Once: Permits access to the application only one time.
- Hour: Enter the number of hours the user will be permitted access, between 1 and 24.
- Day: Enter the number of days. The maximum is 30 days.
- Month: Enter the number of months, between 1 and 12.
- Provide information for the reason of your decision.
- Select Approve Request.
How time limits work
The time limit for a JIT session works differently depending on the access type:
- JIT Application Access: The approved time limit defines how long the user has to start the application or process. For example, if a request is approved for 24 hours, the user has 24 hours from approval to launch the task. After the process starts within that window, EPM does not terminate it when the time limit expires; it is a launch window, not a session timer.
- JIT Admin Access: The approved time limit defines the duration of the elevated admin session. For example, if a request is approved for 2 hours, the user has 2 hours of elevated access from the moment the session begins. EPM notifies the user five minutes and one minute before the session ends. When the time limit expires, the user is logged off.
Updated 6 days ago