Preview Impact
Use this page to preview the impact your user recertification approval choices have on roles, accounts, and groups.
This page displays only those roles, accounts, and groups that are no longer required as a result of your recertification decisions. Some accounts and groups might be impacted and listed on this page even if they are not displayed in the recertification activity. For example, if you specify that the user no longer requires a role, the user might own accounts and groups that depend on the role.
- Roles No Longer Required table
- Lists the roles that you specified that the user no longer requires. The table contains these columns:
- Roles
- Identifies the name of the role.
- Description
- Provides additional information about the role.
- Accounts and Groups No Longer Required table
- Lists the accounts and groups that the user no longer requires. The table contains these columns:
- Accounts and Groups
- Identifies the accounts and any groups associated with each account.
Accounts are identified using the user ID and the name of the service
on which they reside. All impacted groups and accounts are displayed
here, even if they are not displayed in the recertification activity.
Click the icon to collapse the table and list accounts only. Click the icon to expand the table and list all accounts and the groups associated with each account. You can also expand or collapse by account. These options are displayed only if there are one or more groups associated with an account.
- Impact
- Displays the impact to the account or group that is listed. The impact is specified as not required () if you specified the account or group as not required in the recertification activity. The impact is implied as not required () if the account or group is dependent on one or more roles or accounts that you specified as not required in the recertification activity.
- Ownership Type
- Displays the ownership type specified for the account. Ownership types are governed by the provisioning policy of the service.
- Description
- Provides additional information about the account or group.
- Impacted By
- Identifies the roles or the account that is impacting the account or group and causing it to be implied as not required. This column can contain either one account or one or more roles. To prevent the account or group from being impacted, go back to the Review Request page. Try recertifying an account or role that is listed in the Impacted By column. Then, preview the impact again to ensure that the account or group is no longer impacted.