WardeDocs User Guides Admin Guides warde.app

User Guides / Using Warde

Access bundles

Ask for a ready-made set of access for a job or a team, remove a bundle someone no longer needs, and propose a new bundle.

An access bundle is a ready-made set of access for a job or a team, such as everything a new payroll officer needs. You ask for the whole set at once, for one person or several, and everyone on the request is approved or rejected together.

You ask for one in your organisation's portal, usually Employee Center. Look for Access Bundles in the service catalog or a topic, or select Access bundles on My Access. For single items of access, use Request access instead.

Request a bundle

  1. Requested for starts as you. Change it if you are raising the request in someone else's name, such as a direct report. You can only choose people you are allowed to request for.
  2. Under Who needs this bundle, select Choose people and select everyone who needs it.
  3. Search the list by name or description. Each bundle shows how many items it has and who owns it, and whether the people you chose already have it. Select Choose on the bundle you need. For several people, the button says how many of them can have it, such as Choose for 3.
  4. Under On this request, check the bundle:
    • What is in this bundle lists every item it gives. Items a person already has are not added again.
    • Each person is listed with who approves the bundle for them.
    • Accept the terms of use, if the bundle has any.
    • Access this bundle replaces lists access the people will lose once the bundle is in place.
  5. If Access conflicts appears, select Check for conflicts and wait for it to finish.
  6. Under Why is this needed?, say what the bundle is for and why they need it, such as "New starter in payroll, starts Monday".
  7. Select Submit.
The Access Bundles form with the Financial Analyst bundle chosen for Jane Smith, the items it contains, who approves it, and its terms of use
What is in this bundle lists every item the bundle gives, with its approval and terms.

Each request is for one bundle. To ask for a second bundle, submit a new request.

When someone cannot have the bundle

The form marks anyone who cannot have the bundle, with the reason next to their name: they already have it, are already getting it, are having it removed, already have a request for it, or have no account on one of its systems. Select Remove beside their name to take them off. Everyone else on the request still gets the bundle.

The Access Bundles form for four people, with three of them marked as unable to have the Financial Analyst bundle and the reason beside each name
One bundle for four people, with the reason each person left off cannot have it.

When the form refuses to submit

The form says what to fix before it sends anything, for example:

Fix each one and submit again.

Remove a bundle

Use Remove Access Bundles for a bundle someone no longer needs, or select Remove beside a bundle on My Access. The whole bundle is removed, with all the access it gave that person. Access they also have another way, such as through a separate request, is not removed.

  1. Requested for starts as you. Change it if you are raising the request in someone else's name.
  2. Under Choose a bundle to remove, check the person. Select Change person to choose someone else.
  3. The list shows every bundle the person has, with how many items would be removed. Select Choose on the bundle to remove.
  4. Under On this request, check the items that will be removed and who approves the removal.
  5. Under Why is it no longer needed?, give the reason, such as "Left the FP&A team on 30 September."
  6. Select Submit.

A bundle given automatically by a rule, such as one everyone gets when they join, cannot be removed with a request. It follows the person's job or HR details, so ask your manager or service desk to change those. A single item that came in a bundle cannot be removed on its own: remove the bundle. To get a bundle back later, request it again.

Propose a new bundle

If a job needs a set of access that no bundle offers, you can propose one. An administrator reviews every proposal before anything is created.

Open Onboard an Access Bundle in the service catalog, or select Propose an access bundle on your own My Access page.

  1. Under What do you want to do?, choose Propose a new bundle.
  2. Under What is the bundle?, enter:
    • Name: the job name, such as "Payroll Analyst";
    • What is it for?: who needs it, and what the access lets them do;
    • How do people get it?: People request it, or Everyone in a job or team gets it automatically. You are the bundle's owner. An administrator can change the owner later.
  3. Under What goes in it?, search for the access the job needs, or choose an application to see its access, and select Add. To start from someone who already does the job, select Copy from a person, choose them, select Do not add on anything the bundle should not include, then add the rest. You can copy from anyone you are allowed to request access for.
  4. Check In this bundle. Items marked always needs its own approval stay in the bundle, but every request for the bundle also goes to their own approvers. Access that cannot go in a bundle has no Add button, and the reason is shown.
  5. Under Who approves requests for it?, choose an approval policy. The form says who would approve. If none fits, choose None of these fit and describe the approval it should need.
  6. Select Submit.
The Onboard an Access Bundle form proposing a new bundle, with four items copied from Jane Smith, one marked as always needing its own approval, and None of these fit chosen with the approval described
A proposal started from a colleague's access.

What happens to a proposal

  1. An administrator reviews it.
  2. The owner and approvers of each item you chose are asked to approve it, as an ordinary approval. They approve once: people who get the bundle later are not asked each time.
  3. When they have all approved, the bundle is created and your request closes with a comment saying what was created.
  4. You get the email Your access bundle is ready to activate once every item is decided. The bundle goes live when an administrator activates it. People can then request it with Access Bundles, unless everyone in a job or team gets it automatically.

If the administrator or any approver rejects the proposal, nothing is created and the request closes with a comment saying why. To try again, submit a new proposal.

Your proposal appears under My Requests as "New access bundle" and the bundle's name. It reads Waiting for Approval until both approvals are done. My Access does not list proposals.

To change what a live bundle gives, choose Change what is in a live bundle on the same form. Propose a bundle in the administrator guide describes what administrators do with proposals and changes.

After you submit

Your request appears under My Requests in the portal, with a number such as RITM0012345. See Check how a request is going for where to follow it and what each stage means.

Asking for someone else

You can ask for people your organisation lets you request for. By default that is yourself and your direct reports; your administrator may allow more or less. The person you ask for must be able to use Warde themselves; if they cannot, the form says so before you submit, and your service desk can help. Everyone on a request is put on its watch list so they can follow it.

Warde is a ServiceNow scoped application, x_66256_warde. These guides describe the current release. Questions go to [email protected].

ServiceNow is a trademark of ServiceNow, Inc. SailPoint, IdentityIQ and Identity Security Cloud are trademarks of SailPoint Technologies, Inc. Microsoft and Microsoft Entra are trademarks of the Microsoft group of companies.