What is a one sentence summary of your feature request?
Develop the possibility to create a profile in NIM that has strict read-only/query access to the user reconciliation queue
Please describe your idea in detail. What is your problem, why do you feel this idea is the best solution, etc.
In the current release of NIM (6.2.12) it is not possibe to create a profile that provides a strict read-only access to the user reconciliation queue. The profile can be restricted to only viewing the user reconciliation queue but cannot prevent that a pop-up windows appears when clicking on an entry for an unauthorized account in the queue and to select an owner (or ‘no owner’) and then to confirm account deletion or authorize account. This possiblility of course renders the possibility of a read-only profile useless. Netwrix technical support has confirmed this to be a product limitation. Read-only profiles are commonly used for non-technical staff that need to have a view on the status of accounts or groups (manager, supervisors, HR, …) so it would be a real asset to be able to provide this.
How do you currently solve the challenges you have by not having this feature?
Currently we do not have a solution or workaround for this limitation.