Elevation requests - Idemeum Docs

How elevation requests work

Elevation request actions

When you approve / deny elevation request, you can take the following actions:

  1. Approve / deny once for user - you can approve or deny request once for the current application and requesting user. Once the request is approved, user will be able to carry our privileged action without the need to elevate. The approval will only be valid for one-time use, and if the user tries to do the same action again, she will need to request again.
  2. Approve / deny for tenant - you can approve or deny request with automatic rule creation, so that all further requests from other users for this application or action will be handled by the rule. For example, if you deny PowerShell launch as admin for user alex by creating a rule, all other users will not be able to launch PowerShell as admin.

Respond to elevation requests

EPM requests in web portal

EPM requests on mobile