> For the complete documentation index, see [llms.txt](https://help.sentinelsoftware.com/sentinel-help-center/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://help.sentinelsoftware.com/sentinel-help-center/audit-review/restricted-roles.md).

# Restricted Roles

**The** **Restricted Roles** **Report** provides a list of users with access to restricted Roles.&#x20;

{% tabs %}
{% tab title="Summary" %}
Each Tracked Role displays a summary of the following: &#x20;

* **Users -** Number of Users with Correction-Level Access.
* **Remediate -** Number of Users with access pending removal.
* **Not Reviewed -** Number of Users pending review. &#x20;

#### How To Review Users with Access to Restricted Roles:

1. Navigate to **Environments** and select an **Environment.**&#x20;
2. Select '**Audit Review'** and click the **Restricted Roles Report.**&#x20;
3. Use the dropdown to select an existing **Audit Project** or **Create New**.
4. Click the **'View'** icon to display a list of users with access to the control. \
   *\*Filter using the various tabs to customize the report view.\**&#x20;
5. Under the Decision Column, click **Approve** or **Deny.**&#x20;

{% hint style="info" %}
If Restricted Role Access is marked as **'Deny,'** it will display under the **'Remediate'** column until a security administrator *removes* the access.&#x20;
{% endhint %}

<figure><img src="/files/EIRDKdgP1yzyOuZVA1c8" alt=""><figcaption></figcaption></figure>

<figure><img src="/files/OLOQww7LgiBINXiz6AWc" alt=""><figcaption></figcaption></figure>
{% endtab %}

{% tab title="Reports" %}
Restricted Roles Reports can be created and shared with any user.  *\*A Sentinel account **is not*** ***required** to view or download the report.\**

* Generate On-Demand Reports for immediate use.
* Schedule Reports to automatically create and distribute at a set interval.

{% hint style="info" %}
Audit Reports are available to View Online (URL), Save as PDF, or Download as CSV. &#x20;
{% endhint %}

#### Generate On-Demand Restricted Roles Reports:

1. Navigate to **Environments** and select an **Environment.**&#x20;
2. Select '**Audit Review'** and click the **Restricted Roles Report.**&#x20;
3. Click **'Create Report.'**
4. Select an existing **Audit Project** or enter a **Custom Period.** \
   *\*The report will only include Audit Review decisions within the selected period.* &#x20;
5. Enter a **Report Title (Name).**
6. Click **'Generate Report'** and then click **'View Report.'** <br>

   <figure><img src="/files/XtOyubb0xlr6s66QAqJY" alt=""><figcaption></figcaption></figure>

#### Schedule Restricted Roles Reports:&#x20;

1. Navigate to **Environments** and select an **Environment.**&#x20;
2. Select '**Audit Review'** and click the **Restricted Roles Report.**&#x20;
3. Click **'Create Report'** and select the **'Add New Schedule'** tab.&#x20;
4. Enter one or more **Recipient Emails**, separated by a comma.
5. Select an existing **Audit Project.**   \
   *\*The report will only include Audit Review decisions within the selected period.*&#x20;
6. Select the **Interval** (distribution frequency) and enter a **Time/Day.**&#x20;
7. Click **'Save.'**\
   *\*Scheduled reports will appear under the 'Scheduled' tab.* <br>

   <figure><img src="/files/A9mYh1hMdHwbVSrbL5Rw" alt=""><figcaption></figcaption></figure>

{% endtab %}

{% tab title="Settings" %}
Sentinel provides the option to track and audit Restricted Role Access. This feature is fully configurable within the Restricted Roles Settings.&#x20;

#### Add Roles to Track Access:

1. Navigate to **Environments** and select an **Environment.**&#x20;
2. Select '**Audit Review'** and click the **Restricted Roles Report.**&#x20;
3. Under the '**Settings**' tab, search and select a Role to track.&#x20;
4. Check the box to add to **Audit.**<br>

   <figure><img src="/files/SCKKEStBatwOy3K0X5iV" alt=""><figcaption></figcaption></figure>

{% endtab %}
{% endtabs %}
