Configure access requests
Note Roles in Data Access are not the same as global or resource roles.
You can define which asset types support linking to Data Access. This allows an asset owner to link their asset to a Data Access role. Once the asset is linked, users can request access to all the physical data objects that are included in that role, directly from the asset page.
By default, Data Product Port assets can be linked to a role, meaning that access requests are already configured for the Data Product Port asset type.
Prerequisites
You have a global role with the Data Access > Manage Settings global permission, for example, the Data Access Admin global role.
Steps
- On the Data Access landing page, in the left pane, click Settings.
- On the Access requests page, click Add asset type.
- In the Add asset type dialog box, enter the required information, and then click Add.
Assets of the selected type can now be linked to roles in the selected category.Field Description Asset type The asset type that you want to enable for access requests. Relation types (optional) Explicit or derived relation types that connect the selected asset type to the data objects in Data Access.
If you leave this field empty, asset owners can link their assets only to existing roles. If you fill this field, they can choose to create new roles when linking. In creating a new role, Data Access scans the relation paths in the selected relation types to populate the new role with the correct data objects.
Link to role category The category of the roles to which the assets can be linked. This restricts the roles that asset owners can select to only those that belong to the selected category. - If you want a workflow to start when users request access from an asset page (in addition to the access request itself being generated):
- In the Custom workflow section, select a workflow.Important
- Ensure that the final step of the selected workflow completes the approval, that is, it calls the completeAccessRequestApproval operation with a decision. This is required for the access request to move forward.
- The selected workflow is applied to all access requests.
- Click the checkmark icon.
- In the Custom workflow section, select a workflow.