Scope for Request Approvers and Token Distributors
Last Modified: 2026-08-25
Scope for Request Approvers and Token Distributors
Request Approvers can approve requests under the following conditions.
Type of Request | Approval Conditions |
Authenticators | Unassigned authenticators are available within the approver’s scope. |
Group Membership | Both the user and group are in the Approver’s scope. |
Default Group | Approver has scope for the user, regardless of scope over the group. |
Any Request | User must be in the Approver’s security domain. |
For Request Approver workflow instructions, see Approve and Reject User Requests.
Token Distributors can only review and close requests in their security domain.
Related Concepts
Related Articles
Privileges for Request Approvers and Token Distributors 11Number of Views SOFTWARE_TOKEN_NOT_AVAILABLE_IN_SYSTEM_WITH_EXP_CRITERIA Software token of the requested type is not available in your se… 142Number of Views Using E-mail Notifications for Provisioning Requests 43Number of Views Provisioning 2Number of Views Approve and Reject User Requests 22Number of Views
Trending Articles
Artifacts to gather in RSA Identity Governance & Lifecycle How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device How to Update the Root (Server) and Client Certificates in RSA Identity Governance & Lifecycle Troubleshooting AFX Connector issues in RSA Identity Governance & Lifecycle RSA MFA Agent for UNIX Platform Support Matrix
Don't see what you're looking for?