AWS-Paris AWS-dublin S3NS
This release introduces new capabilities on SAP integration, role request and bug fixes
Delivery Timeline
-
Staging:
-
Production:
New Features
Feature name: Native SAP Authorization Model Discovery (Composite Roles, Standard Roles, Transactions)
Key benefit:
-
Native discovery of the SAP authorization model (composite roles, standard roles, transactions) directly within Memority
-
No more need to manually recreate SAP roles in Memority
-
Centralized visualization of SAP information directly from the Memority interface
-
Ability to generate reports (e.g. number of users per transaction)
-
Upcoming enhancement: Segregation of Duties (SoD) management at the transaction level
Read more: https://doc.memority.eu/configuration-guide/latest/sap-replication-task-definition https://doc.memority.eu/configuration-guide/latest/sap-transaction-connector https://doc.memority.eu/configuration-guide/latest/sap-role-connector
Feature name: SAP GRC Integration via new Workflow capabilities (Retryable Script Task)
Key benefit:
-
Native workflow step (Script Task) capable of triggering external calls (e.g. to SAP GRC) directly from a Memority workflow
-
Built-in retry mechanism with configurable timeout — no need for custom scripting to handle transient failures
-
Workflow pauses natively until SAP GRC validation is received, before deciding whether the role is granted (or not) in Memority
-
Fully auditable: each call, retry attempt, and validation outcome is traceable within the workflow history (API_WORKFLOW_HISTORY)
Read more: https://doc.memority.eu/configuration-guide/latest/workflow
Feature name: Import Simulation Report
Key benefit:
-
Provides a detailed view of the impacts of an import before final validation
-
Gives precise details of the actions that would be triggered if thresholds are reached
-
Reduces the risk of errors or side effects during mass imports
-
Facilitates business/technical validation before triggering
Feature name: Hourly Granularity for Role Request
Key benefit:
-
Allows role request screens to be configured with hourly granularity instead of the default daily granularity
-
Enables granting entitlements over a much shorter time window
-
Strengthens the least-privilege principle by limiting the exposure duration of sensitive access
-
Addresses use cases requiring very short-term temporary access (e.g. one-off intervention, on-call duty)
Read more: https://doc.memority.eu/configuration-guide/latest/roles-widgets
Feature name: Multiple Instances of the Same Role in a Single Request
Key benefit:
-
Allows the same role to be requested multiple times within a single request
-
Particularly useful for assigning a role across two different scopes with different effective dates
-
Avoids having to trigger the request process multiple times for the same role
-
Simplifies the user experience
Bug Fixes
-
Fixed a bug affecting exports on the reporting side
-
Security fixes