You can set up rules to separate tasks that must be performed by different users. This concept is named segregation of duties. Use Validate segregation of duties to verify whether existing roles comply with new rules for segregation of duties. So, it validates intra-role compliance.

If any existing roles violate the selected rule, a message is displayed that contains the name of the role and the names of the conflicting duties. The security administrator must either indicate the mitigation for the security risk or modify the role so that it does not violate the rules for segregation of duties. If no roles violate the selected rule, a message indicates that all roles comply.


Standard procedure

1. Click Security management.
2. Click the Segregation rules tab.
3. In the list, find and select the segregation of duties rule to be validated.
4. Click Validate duties and roles.
 

Note: Check the resulting messages. If violations are indicated, solve these violations.

Provide feedback