IDdriven, Inc. is giving an overview of the recent continuing product improvements that makes the IDdriven solution even better. Over the last few months the development team of IDdriven has quietly worked on continuous improvements some of the highlights of the accomplishments: Over-write function on Segregation of Duties: In previous releases it was possible to define what access rights are toxic within the same or across applications (Segregation of Duties). The newest release supports the over-write function of Toxic access rights. It allows the application manager or administrator to determine whether a toxic permission: Can never be over-written Can be over-written after approval by the security officer Can be over-written after approval by the application owner. When applied through self-service, the standard approval is still applied. Meaning that when a user requests a role with an access right which is toxic and over-write is ON, it will first send the request to the over-write approver and after approval it will follow the normal approval by department manager. New menu item named ‘Policies’: A new menu item named ‘Policies’ is introduced. It will give the overview of all policies applied in the IDdriven environment. The following policies can be reviewed from this new menu: a) All toxic definitions and their actual over-write status b) All roles which have a policy applied. An expansion function is made for each role to show even more. c) All roles which have Zone Based Access Control active. Update for Model browser: Model browser is known for the ability to browse through the OU’s, Users and Roles. Extended the model browser with the ability to show: a) Child roles b) Access Rights. Edit Role names: Allowing the user to change Role names. This is only possible for users with the internal IDdriven access right ‘Role manager’ or ‘Administrator’. Edit Certification Campaign names: Allowing the user to change Certification Campaign names. This is only possible for users with the internal IDdriven access right ‘Campaign manager’ or ‘Administrator’. Role processing: A more graphical indicator was applied that shows the status of the role during processing. Added Information icons: To increase usability of the product, more information icons were added. When set the mouse icons, a text is displayed to explain what the function is Increased provisioning and deprovisioning speed: The connector code has been upgraded to improve provisioning and deprovisioning actions fifty-fold – from thousands to hundreds of thousands per instance in minutes.