cancel
Showing results for 
Search instead for 
Did you mean: 

GRC AC 10 SP16 - Rule Set Permission *

Former Member
0 Kudos

Hello

We have some risks in our ruleset that we would like to isolate the value to *. Meaning we don't want all values returned like 01,02,03, * but only authorization object field values that are equal to *.

Does anyone know how to configure this into the ruleset? We have suim queries that have "*" but we believe quotation marks will cause an error or won't be able to be saved. Is this even possible?

Accepted Solutions (0)

Answers (1)

Answers (1)

alessandr0
Active Contributor

Hi Stacey,

I have shortly tried your example and have the following findings.

Role definition in PFCG - ACTVT with *:

Function definition with *

Risk Analysis for the role:

A violation is reported as both values are same (*).

I have now changed the activity in the role to 03:

Run the Risk Analysis again:

No violation reported as the values don't match. It seems to work as you expected?

Did you try the same as I did? If so, it seems that there is a difference between AC 10.0/SP16 and AC 10.1/SP5.


Please let me know.

Best regards,

Alessandro