
AntonyWardle (Customer) asked a question.
Are there any plans to allow Just In Time Access to administrator roles to the RSA on-premise appliance. I want to implement JIT Access to allow an approved request to give me access to specific roles which is a similar pattern to my server access
Antony:
You can submit an RFE, but this is not likely something that will ever be added. Either a user has an authorized administrative role, or they do not. Someone needs to vet this user and determine that they do need this kind of access. This is the same reason we do not use group membership for administrative roles, since there is no RSA oversight on AD group membership.
Thanks for the reply.
I guess RSA need to decide if permanent admin access to a 2FA system is inline with industry expectations.
I was interested in finding out.
Thanks once again