How To Prevent User Entry From Being Created Automatically In Tenant (Manage > Access) Orchestrator?

How to prevent user entry from being created automatically in tenant (Manage > Access) Orchestrator?

Analysis:

  • If a user is part of a group and the group has access to a tenant, then once the user login to Orchestrator and access the tenant, the user entry will be created automatically in Manage Access.

  • This can be checked in Audit log of the tenant.


Resolution:

As the user is part of Everyone group by default, it cannot be updated, and Everyone group is also having access to each tenant by default even if it has no role assigned.

  • Remove Everyone group for the tenant.


In this case, the user cannot access this tenant anymore (if the user is not part of other groups with the tenant access), hence user entry will not be created in Manage Access.