# Privileged Access

**The Privileged Access Report** provides a list of users with access to Administration controls, pages, or other defined processes.

Pages classified as Privileged Access may not always contain PII/PCI data but can be administrative or functional-type pages. \[Security Pages, Approval Pages, Process Pages]

{% tabs %}
{% tab title="Summary" %}
Each Privileged Access Control displays a summary of the following: &#x20;

* **Users -** Number of Users with access.
* **Remediate -** Number of Users with access pending removal.
* **Not Reviewed -** Number of Users pending review.&#x20;

#### How To Review Users with Privileged Access:

1. Navigate to **Environments**, and select an **Environment.**&#x20;
2. Select '**Audit Review'** and click the **Privileged Access** **Report.**&#x20;
3. Use the dropdown to select an existing **Audit Project** or **Create New**.
4. Click the **'View'** icon to display a list of users with access to the control. \
   \&#xNAN;*\*Filter using the various tabs to customize the report view.\**&#x20;
5. Under the Decision Column, click **Approve** or **Deny.**&#x20;

{% hint style="info" %}
If Privileged Access is marked as **'Deny,'** it will display under the **'Remediate'** column until a security administrator *removes* the access.&#x20;
{% endhint %}

<figure><img src="https://4263253103-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fe25a8u5fuAxDPpsekhB9%2Fuploads%2FRp2gqNWeRoMTzhBFDGI0%2FPrivileged%20Access%201%20.png?alt=media&#x26;token=04cd836d-10ac-4bf1-b57a-acc931ec36e7" alt=""><figcaption></figcaption></figure>

<figure><img src="https://4263253103-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fe25a8u5fuAxDPpsekhB9%2Fuploads%2FgtbpEjBlfIoIFDhyRdnL%2FPrivileged%20Access%20Report%20-%202.png?alt=media&#x26;token=c5786e4a-7dcc-4fe6-ac57-f1817bd51641" alt=""><figcaption></figcaption></figure>
{% endtab %}

{% tab title="Reports" %}
Privileged Access Reports can be created and shared with any user.  *\*A Sentinel account **is not*** ***required** to view or download the report.\**

* Generate On-Demand Reports for immediate use.
* Schedule Reports to automatically create and distribute at a set interval.

{% hint style="info" %}
Audit Reports are available to View Online (URL), Save as PDF, or Download as CSV. &#x20;
{% endhint %}

#### Generate On-Demand Privileged Access Reports:

1. Navigate to **Environments** and select an **Environment.**&#x20;
2. Select '**Audit Review'** and click the **Privileged Access** **Report.**&#x20;
3. Click **'Create Report.'**
4. Select an existing **Audit Project** or enter a **Custom Period.** \
   \&#xNAN;*\*The report will only include Audit Review decisions within the selected period.* &#x20;
5. Enter a **Report Title (Name).**
6. Click **'Generate Report'** and then click **'View Report.'** <br>

   <figure><img src="https://4263253103-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fe25a8u5fuAxDPpsekhB9%2Fuploads%2FkQMlfTnlDFwZXvWh3Og6%2FOn-Demand%20Privileged%20Access%20Report.png?alt=media&#x26;token=70a71ac9-7c20-4f0c-84db-6cc58a3350aa" alt=""><figcaption></figcaption></figure>

#### Schedule Privileged Access Reports:&#x20;

1. Navigate to **Environments** and select an **Environment.**&#x20;
2. Select '**Audit Review'** and click the **Privileged Access** **Report.**&#x20;
3. Click **'Create Report'** and select the **'Add New Schedule'** tab.&#x20;
4. Enter one or more **Recipient Emails**, separated by a comma.
5. Select an existing **Audit Project.**   \
   \&#xNAN;*\*The report will only include Audit Review decisions within the selected period.*&#x20;
6. Select the **Interval** (distribution frequency) and enter a **Time/Day.**&#x20;
7. Click **'Save.'**\
   \&#xNAN;*\*Scheduled reports will appear under the 'Scheduled' tab.* <br>

   <figure><img src="https://4263253103-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fe25a8u5fuAxDPpsekhB9%2Fuploads%2FJPzLdHEndojZSNRibrBS%2FSchedule%20Privileged%20Access%20Reports%20.png?alt=media&#x26;token=abf90b1b-881b-4c55-944d-7c2d457fd570" alt=""><figcaption></figcaption></figure>

{% endtab %}

{% tab title="Settings " %}
Sentinel is delivered with Default Privileged Access Controls for each module. All controls are fully configurable within the Privileged Access Settings.&#x20;

#### Add Privileged Access Controls:

1. Navigate to **Environments** and select an **Environment.**&#x20;
2. Select '**Audit Review'** and click the '**Privileged Access**' Report.&#x20;
3. Under the '**Settings**' tab, check the box to activate a **Page** as a new control.

   *\*Click the Settings Icon to view the selected pages that will be tagged on the Navigation Menu and appear in Audit Reports.*&#x20;
4. Filter to the **'Add by Page' or 'Add by Component'** tabs to customize the view.&#x20;

{% hint style="info" %}
Select the **'Activate Default Controls'** button to enable the Sentinel-delivered controls.&#x20;
{% endhint %}

<figure><img src="https://4263253103-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fe25a8u5fuAxDPpsekhB9%2Fuploads%2FmTc5bpqLGs4vGfCKyuIy%2FPrivileged%20Access%20Settings%201.png?alt=media&#x26;token=4502055a-6825-45a1-8601-71bf7ef85cbd" alt=""><figcaption></figcaption></figure>

<figure><img src="https://4263253103-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fe25a8u5fuAxDPpsekhB9%2Fuploads%2F8ZOwoXFGv6ZQcbrfkMvt%2FPrivileged%20Access%20Settings%202.png?alt=media&#x26;token=0beb602d-53cd-4260-aa73-bd5f6915b3d0" alt=""><figcaption></figcaption></figure>
{% endtab %}
{% endtabs %}
