# Sentinel Accounts

There are two types of accounts in Sentinel: Admins and Non-admins.

* Admins can access *all* PeopleSoft environments and Sentinel modules & submenus. &#x20;
* Non-admin users can only access the modules defined in their Security Profile for each PeopleSoft environment.

Security changes made in Sentinel and PeopleSoft are automatically synced after they occur. To differentiate between PeopleSoft and Sentinel updates, each update from Sentinel is prefixed by SNT\_(User ID) in the PeopleSoft database.

<details>

<summary>Create A Sentinel Account </summary>

*\*A valid PeopleSoft UserID and Email Address are required to create a Sentinel account.*

1. Navigate to **Settings** - **Sentinel Accounts**.&#x20;
2. Click '**Add**,' located at the top right.&#x20;
3. Search and select the user.&#x20;
4. Verify the PeopleSoft UserID, Email, and First & Last Name of the user.&#x20;
5. Click **'Create Account.'** <br>

   <figure><img src="/files/6QnhSPTHZmkvLPSUUbya" alt=""><figcaption></figcaption></figure>
6. Once created, the new user will appear in the **'Users'** tab.&#x20;
7. Select the user and click **'Promote to Admin'** to grant administrative privileges or give access to specific environments by assigning a **Security Profile**.  <br>

   <figure><img src="/files/9zicRA1FZgtoGKu1iXI8" alt=""><figcaption></figcaption></figure>

#### Delete a Sentinel Account:&#x20;

1. Navigate to **Settings - Sentinel Accounts.**&#x20;
2. Select the user and click **'Delete Account.'** \
   \&#xNAN;*\*Audit logs will be retained, and any open Access Requests associated with the deleted user will be replaced with an **'Account Inactive'** label.* &#x20;

   <figure><img src="/files/zXQEWtwMaM9JOsoD65Wh" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>Security Profiles </summary>

Security Profiles are used to manage access to Sentinel modules and submenus. Non-admin users can only access a PeopleSoft environment if given an Access Profile for the environment.

Sentinel includes delivered profiles that can be modified, or new profiles can be created.

#### 'Default' Access Profiles  <a href="#default-access-profiles" id="default-access-profiles"></a>

A 'Default Profile' is assigned to a user who registers for an account on the Login page ([**SSO**](https://sentinelsoftware.gitbook.io/sentinel-help-center/settings/configuration/saml-config#how-to-assign-access-profiles-for-sso-users)). This profile only grants access to the Request module unless otherwise modified.

#### Create a New Security Profile:&#x20;

1. Navigate to **Settings - Sentinel Accounts.** &#x20;
2. Under the **'Security Profiles'** tab, click **'Add.'**&#x20;
3. Input a **Profile Name** and **Description**.
4. Click **'Create.'** <br>

   <figure><img src="/files/xJDHJkGWPDlWwRc5TLc5" alt=""><figcaption></figcaption></figure>
5. Once created, check the boxes to specify which modules and submenus the profile will grant 'View' or 'Edit/Update' permissions.  *\*Select 'X' to remove module access.*&#x20;

   <figure><img src="/files/FeKEdCsbm8eaBZZn5xSx" alt=""><figcaption></figcaption></figure>

</details>

{% tabs %}
{% tab title="Environments" %}
Non-admin users can only access a PeopleSoft environment if they've been assigned a profile for the environment. &#x20;

#### Grant Non-Admin Users Access to Environments:   &#x20;

1. Navigate to **Settings - Sentinel Accounts.**&#x20;
2. Search and select a user.&#x20;
3. Use the dropdown to assign a profile for each environment applicable.&#x20;
4. Save changes.

   <figure><img src="/files/X5P0rTXYBKbw4coV2kr3" alt=""><figcaption></figcaption></figure>

{% endtab %}

{% tab title="Admin Menus" %}
Non-admin users can be given access to individual Admin Menus (Settings).

#### Grant Non-Admin Users Access to Admin Menus: &#x20;

1. Navigate to **Settings - Sentinel Accounts.**&#x20;
2. Search and select a user.&#x20;
3. Under the **'Admin Menus'** tab, check the boxes to specify which menus to grant 'View' or 'Edit' permissions.&#x20;
4. Save changes.&#x20;

   <figure><img src="/files/mtvMbJlQbSbKVIJboAP6" alt=""><figcaption></figcaption></figure>

{% endtab %}

{% tab title="Role Access" %}
Non-admin users can be restricted access to view only specific Roles. This applies to the following pages in Sentinel:

* \[Environment] Security - Users - Edit Roles&#x20;
* \[Environment] Security - Roles&#x20;
* Requests - Create New Request - Select Roles<br>

#### Restrict Non-Admin Users' Access to View Roles:

1. Navigate to **Settings - Sentinel Accounts.**&#x20;
2. Search and select a user.&#x20;
3. Under the '**Role Access**' tab, check the box to grant *All Access* or restrict visibility to only the *underlying Roles* of a Role Group.&#x20;
4. Save changes.&#x20;

   <figure><img src="/files/7CSN267HLU3TMUK0tzj3" alt=""><figcaption></figcaption></figure>

{% endtab %}

{% tab title="User Access" %}
Non-admin users can be restricted access to view only select PeopleSoft users. Visibility can be restricted by one or more fields: **Business Unit, Department, Location, Company, or Region.**&#x20;

<mark style="color:green;">**EXAMPLE 1**</mark>\
Business Unit  = GBIBU\
Users will only see employees in 'Business Unit GBIBU.'

<mark style="color:green;">**EXAMPLE 2**</mark>\
Business Unit  = GBIBU\
Department = 13000\
Users will only see employees in 'Department 13000' with 'Business Unit GBIBU.'<br>

#### Restrict Non-Admin Users' Access to View Users:

1. Navigate to **Settings - Sentinel Accounts.**&#x20;
2. Search and select a user.&#x20;
3. Under the '**User Access'** tab, select the submenu of the desired field type.
4. Search and select the corresponding field criteria. \
   \&#xNAN;*\*Check the box 'Allow Users With No EMPLID' to permit access to view PeopleSoft user profiles without an EMPLID attached.*&#x20;
5. Save changes.&#x20;

   <figure><img src="/files/RKEe3vCIeXeAVP77ljoX" alt=""><figcaption></figcaption></figure>

   <figure><img src="/files/i1qUN61GRnh2neTftB34" alt=""><figcaption></figcaption></figure>

{% endtab %}

{% tab title="Audit Modules" %}
Non-admin users can be restricted access to specific modules in Managers Reports.&#x20;

#### Restrict Non-Admin Users' Access to Audit Modules: &#x20;

1. Navigate to **Settings - Sentinel Accounts.**&#x20;
2. Search and select a user.&#x20;
3. Under the '**Audit Modules'** tab, check the boxes of desired modules to display.&#x20;
4. Save changes.&#x20;

   <figure><img src="/files/rzznpOUACIGi4Gmmigc1" alt=""><figcaption></figcaption></figure>

{% endtab %}
{% endtabs %}


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://help.sentinelsoftware.com/sentinel-help-center/settings/sentinel-accounts.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
