Skip to main content

entitlement_management_assignments_additional_access

Creates, updates, deletes, gets or lists an entitlement_management_assignments_additional_access resource.

Overview

Nameentitlement_management_assignments_additional_access
TypeResource
Identra_id.identity_governance.entitlement_management_assignments_additional_access

Fields

The following fields are returned by SELECT queries:

NameDatatypeDescription
idstringThe unique identifier for an entity. Read-only.
accessPackageRead-only. Nullable. Supports $filter (eq) on the id property and $expand query parameters.
assignmentPolicyRead-only. Supports $filter (eq) on the id property and $expand query parameters.
customExtensionCalloutInstancesarrayInformation about all the custom extension calls that were made during the access package assignment workflow.
expiredDateTimestring (date-time)The Timestamp type represents date and time information using ISO 8601 format and is always in UTC time. For example, midnight UTC on Jan 1, 2014 is 2014-01-01T00:00:00Z. Read-only. (pattern: ^[0-9]{4,}-(0[1-9]|1[012])-(0[1-9]|[12][0-9]|3[01])T([01][0-9]|2[0-3]):[0-5][0-9]:[0-5][0-9]([.][0-9]{1,12})?(Z|[+-][0-9][0-9]:[0-9][0-9])$)
scheduleWhen the access assignment is to be in place. Read-only.
stateThe state of the access package assignment. The possible values are: delivering, partiallyDelivered, delivered, expired, deliveryFailed, unknownFutureValue. Read-only. Supports $filter (eq).
statusstringMore information about the assignment lifecycle. Possible values include Delivering, Delivered, AutoAssignmentInGracePeriod, NearExpiry1DayNotificationTriggered, or ExpiredNotificationTriggered. Read-only.
targetThe subject of the access package assignment. Read-only. Nullable. Supports $expand. Supports $filter (eq) on objectId.

Methods

The following methods are available for this resource:

NameAccessible byRequired ParamsOptional ParamsDescription
get_2selectaccess_package_id, incompatible_access_package_id
getselectIn Microsoft Entra Entitlement Management, retrieve a collection of accessPackageAssignment objects that indicate a target user has an assignment to a specified access package and also an assignment to another, potentially incompatible, access package. This can be used to prepare to configure the incompatible access packages for a specific access package.

Parameters

Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.

NameDatatypeDescription
access_package_idstringUsage: accessPackageId='{accessPackageId}'
incompatible_access_package_idstringUsage: incompatibleAccessPackageId='{incompatibleAccessPackageId}'

SELECT examples

Success

SELECT
id,
accessPackage,
assignmentPolicy,
customExtensionCalloutInstances,
expiredDateTime,
schedule,
state,
status,
target
FROM entra_id.identity_governance.entitlement_management_assignments_additional_access
WHERE access_package_id = '{{ access_package_id }}' -- required
AND incompatible_access_package_id = '{{ incompatible_access_package_id }}' -- required
;