How to make the sender address field non-editable when clicking on send email button while performing the review in RSA Identity Governance & Lifecycle
2 years ago
Originally Published: 2018-03-31
Article Number
000051402
Applies To
RSA Product Set: Identity Governance & Lifecycle
RSA Version/Condition: All
Issue
When we enable Allow reviewers to send emails from within their review in the review definition (under the Reviewers tab of the review definition), the reviewers will see a Send Email button while performing their review items. When the reviewers click on send email button the sender address (FROM field) in the email can be edited before sending the email, with this behavior the reviewer can change the sender email address to a different one. 

Example:
  1. Navigate to Reviews > Definitions and select any review definition and click on Edit Definition.
  2. Click on the Reviewers tab and click Allow reviewers to send emails from within their review to enable the send email feature in the review result.
User-added image
  1. Click Run Review and wait for the review result to generate.
User-added image
  1. Once the review result is generated, login as the reviewer to perform the review.
User-added image
  1. Click Send Email to see if the sender's address (FROM field)  is editable.
User-added image
Resolution
To make the sender address non editable while sending the email follow the below steps.
  1. Edit the review definition and click on configuration tab. You can see an option From address is editable.
  2. Uncheck the box and generate a review result. 
User-added image
  1. Now when you login as a reviewer you can see the sender address is not editable when the reviewer clicks the Send Email button. 
User-added image
 

AveksaAdmin, users with Admin privileges and the review owners will be able to edit the sender email address if they are chosen as reviewers even if the From address is editable is disabled.