Just-in-time (JIT) access management
What is just-in-time access management?
Just-in-time ( JIT) access management is a ticket system that provides a way for you to manage user requests that require an approval from an administrator.
What is a use case for JIT access management?
An example use case is controlling application access for your general application rules, such as those matching Any Application or Any UAC Prompt.
In a policy, creating a JIT Application Request message type requires the users to add a reason for access. The approver reviews the request and can either approve (for a limited time period) or deny the access based on that information.
JIT access management workflow
- Activate the user request service in Configuration.
- Create a policy with a message type JIT Application Request.
- Add the policy to a computer group.
- Set the permissions for the users that will manage approvals. Select custom permissions or use the Manage Request role.
- After the policy and ticket system are configured and ready for use, the administrator can review and approve the requests in EPM.
Updated 3 days ago