Create an auditor role,

Lucien1
Giga Expert

Hi all,

 

We are just about to have an audit and I have been asked to come up with a solution on allowing the auditors "Read Only" access into SN. After reading all the forums to see what other admins have done, I am still lost as to what route is best. Now I know ACL's are what a lot of guys have said, but as there has to be a better way in doing this and I am a bit weary about going down this route as we will be upgrading from Calgary to Eureka whilst they complete the audit.

 

Can anyone out there that has completed this please share what they have done?

 

Thanks all,

 

Lucien

1 ACCEPTED SOLUTION

Hey Lucien,



Unfortunately, this solution requires the use of those roles. To allow visibility without any role usage, you would certainly have to go down the ACL route (no fun). Depending on the length of the audit engagement, perhaps you could shift things around temporarily to accommodate the auditors? Sorry there isn't an easier role-free solution!


View solution in original post

18 REPLIES 18

Hi Ben Hollifield,



Thanks for your reply, Its a pity that one needs to go through such a hassle just to create a role that is not meant to change a thing but be able to have visibility for compliance reasons.



Oh well, thank you for letting me know about the script as that will be really handy in the future.



Kind regards,



Lucien


Lucien,



We are in the same boat as your were in August.   The auditors have arrived on site and require read only access to SN.   I see that you were working through the share app, and I was wondering what your results were?



Any details that you could provide would be prove most useful.



Thanks a bunch!


Wade


Hi Wade,



We installed the update set but there was a bit of tweaking that needed to be done so ran out of time as the auditors came onsite. In the end, we sat down with them and found out exactly what they wanted and gave them the information.



At this stage, our senior administrator is tweaking the config for the future.



Regards,


Lucien


Excellent.   I am running into the same issue, the audit role created still provides access to create.   But at least it does remove modify and delete functionality.



Here's to hoping that Ben comes up with V1,3.



Thanks for the info.


Hi Wade,



Speak with your auditors and if they are happy to do so, clone your instance onto your test and give them access to that. This way they can't break a thing.



They will most likely need proof of the clone so add them to the watch list of the change request.