Skip to main content

Documentation Index

Fetch the complete documentation index at: https://docs.oleria.com/llms.txt

Use this file to discover all available pages before exploring further.

Access Inventory consolidates data from your connected platforms into a unified view. Use it to browse and filter identity accounts, application accounts, resource instances, and employees across all integrated systems. By default, the data displays in the Identity accounts view. Selecting an account opens a full 360-degree overview of that identity.

Identity accounts

The Identity accounts view aggregates all identity accounts from your integrated applications into a consolidated view, streamlining access visibility across multiple identity platforms. Navigate to PostureAccess Inventory to view identity accounts. Selecting an identity navigates to the 360 view showing assigned applications, method of assignment, related application accounts, assigned groups, and assigned roles - along with the corresponding metadata. The following filters are available on the Identity accounts view:
FilterDescription
Account EmailThe email address associated with the account.
ApplicationThe specific application to which the account has access.
Application InstanceThe instance of the application.
Assigned Application CountNumber of applications the identity account is a member of.
Assigned Groups CountNumber of groups the identity account is a member of.
Assigned Roles CountNumber of roles assigned to the identity account.
Authentication methodsHow the identity account authenticates to an enterprise application or identity provider.
Created DateThe date the identity account was created.
Dormant DaysNumber of days the application account has been inactive.
Identity NameThe name of the account holder.
Identity TypeWhether the account belongs to a human (User) or non-human (Machine) identity.
Is AdminWhether the user account has administrator privileges.
Last Password changedWhen the user password was last changed.
MFA StatusWhether multi-factor authentication (MFA) is enabled for the user.
SSO EnabledSSO status of the application.
User StatusWhether the account is Enabled or Disabled in the application.

Common use cases

Find accounts assigned to more than n applications Apply the Assigned application count filter set to greater than n. Find accounts using email as an authentication method Apply the Authentication methods filter set to includes Email.

Application accounts

The Application accounts view aggregates all application accounts from your integrated applications into a consolidated view. Navigate to PostureAccess InventoryApplication accounts. Selecting an application account navigates to the 360 view of assigned groups, roles, and resource access - along with the corresponding metadata. The following filters are available on the Application accounts view:
FilterDescription
Account EmailThe email address associated with the account.
Account NameThe name of the account holder.
Account TypeWhether the account belongs to a human (User) or non-human (Machine) identity.
ApplicationThe specific application to which the account has access.
Application InstanceThe instance of the application.
Application RoleA role assigned within an application defining permissions in an RBAC system.
Assigned Groups CountNumber of groups the application account is a member of.
Assigned Roles CountNumber of roles assigned to the application account.
Authentication methodsHow the application account authenticates to an enterprise application or identity provider.
Department NameThe department the account belongs to.
Dormant DaysNumber of days the application account has been inactive.
Has API accessWhether the user account has API access.
Is AdminWhether the user account has administrator privileges.
Last Password changedWhen the user password was last changed.
License LevelThe license assigned to the user.
MFA StatusWhether multi-factor authentication (MFA) is enabled for the user.
SSO EnabledSSO status of the application.
User StatusWhether the account is Enabled or Disabled in the application.
User TypeStandard (internal), External (outside your organization with shared resource access), Anonymous (unauthenticated link-based access), or Unknown.

Common use cases

Find users who have not changed their password in the last 6 months Apply the Last Password changed filter set to before your target date.

Resource instances

The Resource instances view aggregates all resources from your integrated applications into a consolidated view. Navigate to PostureAccess InventoryResource Instances. Selecting a resource instance navigates to the 360 view of assigned groups, roles, and access to sub-resources - along with the corresponding metadata. The following filters are available on the Resource instances view:
FilterDescription
ApplicationThe specific application to which the resource belongs.
Application InstanceThe instance of the application.
Data ClassificationThe data classification label assigned to the resource.
OwnerThe resource owner.
Owners countNumber of owners assigned to a resource.
Resource Instance NameName of the resource.
Resource typeThe type of resource.
Sensitive Information CountNumber of files labelled with a data classification within a SharePoint site or folder.

Common use cases

Find all sensitive resources labelled Highly Confidential or Restricted Apply the Data Classification filter set to includes Confidential and Restricted. Find all SharePoint site owners Apply the following filters:
  • Resource Type contains site
  • Data Classification includes Highly Confidential and restricted
Find SharePoint sites or folders with unlabelled sensitive files Apply the Sensitive Information Count filter set to greater than n.

Employees

The Employees view aggregates all employee records from your connected HR or identity applications. From HR applications: Employee information from connected HR applications such as Workday or SAP SuccessFactors is displayed automatically. Check WorkspaceIntegrationsAvailable for supported HR applications. From identity applications: If your identity application is configured as the primary employee source in Access Review settings, employee information from that system is shown instead. Navigate to GovernanceAccess ReviewsSettings and select your identity application as the primary employee source. Navigate to PostureAccess InventoryEmployees to view employee data. Selecting an employee navigates to the 360 view showing team information (if the employee is a manager) and identity application memberships, along with the corresponding metadata. The following filters are available on the Employees view:
FilterDescription
Application InstanceThe instance of the application.
Country NameThe employee’s country.
Department NameThe employee’s department.
Employee NameThe name of the employee.
Employee NumberThe employee’s ID number.
Is ManagerWhether the employee manages other people.
Manager NameFilters all direct reports for a given manager.
Start DateThe employee’s employment start date.
TitleThe employee’s job title.

Common use cases

Find all team members reporting to a manager Apply the Manager Name filter set to includes the manager’s name. Find all employees who are managers Apply the Is Manager filter set to True.

Contact us

For questions, contact us at support@oleria.com.