Event banner
Improve your security posture with Microsoft Entra ID Governance
Event Ended
Wednesday, Dec 06, 2023, 07:00 AM PSTEvent details
Organizations often begin governing identities in response to an issue, such as an audit finding or breach. But increasingly they're proactively in deploying identity governance to help prevent these...
Heather_Poulsen
Updated Dec 27, 2024
SigurdWerner
Dec 06, 2023Iron Contributor
Access packages: If you add group membership resource role to an access package it always creates an active membership and has no option to create eligible one. How can I add eligible group memberships in access packages? pre-creating them is also not helping.
- SigurdWernerDec 06, 2023Iron Contributorso, the business case behind is we have multiple orgs in the same tenant managed by different IT teams. We created RBAC based on eligible group membership. But some IT members manage multiple companies in the same role. We just want to make their lives easier, so they don't have to PIM for the role for every single company and bundle the request in an access package. But with access package they are always in the role and nit JIT
- Jef_KazimerDec 06, 2023
Microsoft
Today you can assign access to groups as either Member or Owner role which are active assignments. I think this is a great enhancement to be able to assign eligible to take advantage of PIM for groups for JIT activation for membership of those groups, and we'll take that feedback for the future.