The requests need to be approved in the following scenarios:
Access requests require approval by the responsible attorney or the Administrator (Security Policy: Restricted)
- Access requests require approval by an administrator (Security Policy: Restricted)
- Access requests require approval by any member of the matter team or the administrator (Security Policy: Restricted)
You can approve/reject access requests in two ways:
Option 1: From the Email Notification
When a user requests for access to a matter or a case, you (approver) receive an email notification. Based on the notification mode set by your system administrator, you receive one of the three predefined email notifications. Based on the email notification received, you can act upon the access request from the email in one of the following ways:
- You access the email through a web client or mobile client, and you are required to securely access the iManage Security Policy Manager application to take action on the request. The link in the email guides you to the Manage Access Requests page in iManage Security Policy Manager. For more information on how to act upon the request from the Manage Access Requests page, see Option 2: From the iManage Security Policy Manager User Console.
- You access the email through a web client or mobile client, which contains tokenized links (Approve as Team Member, Approve as Basic Team Member, Deny Access Request). Clicking on any link sends your response directly to iManage Security Policy Manager. The user gets unlimited period access, if approved. To update user type and access period, click Open Security Policy Manager to set the User Type and Access Period link in the notification.
- You access the email through an email client, which contains tokenized links (Approve as Team Member, Approve as Basic Team Member, Deny Access Request). This configuration mode enables you to respond to the request offline. Clicking on any link creates a response email and the response is sent to iManage Security Policy Manager when internet becomes accessible. The user gets unlimited period access, if approved. To update user type and access period, click Open Security Policy Manager to set the User Type and Access Period link in the notification.
Option 2: From the iManage Security Policy Manager User Console
After you are logged in to the iManage Security Policy Manager application, click the Access Requests tab > Manage Access Requests tab.
The Manage Access Requests page, with the list of pending for approval requests, appears.
- In the required request row, do one of the following:
- Click on the request row or select the check box next to a user.
- Click Quick Approve to add the user directly as a team member for unlimited access period.
- Click Approve. The Approve dialog box appears.
- In the User Type field, click one of the option to add the user as a Team Member or a Basic Team Member.
- In the Set Access Period field, click one of the option to provide access for unlimited period or a defined period.
- If you chose 'Access Period is Time Limited',
- From the date picker, select the date and time up to which you want to provide access to the user. If you do not specify a time, then the system will default the time to midnight in the time zone of the server.
- Click Submit. The access duration is set for the user.
- If you chose 'Access Period is Time Limited',
- Click Deny to reject the request for access from the user.
- Click in the request row, then
- Click View Reason to see the reason entered by the requestor for placing the access request.
- Click Quick Approve to add the user directly as a team member for unlimited access period.
- Click Approve. The Approve dialog box appears.
- In the User Type field, click one of the option to add the user as a Team Member or a Basic Team Member.
- In the Set Access Period field, click one of the option to provide access for unlimited period or a defined period.
- If you chose 'Access Period is Time Limited',
- From the date picker, select the date and time up to which you want to provide access to the user. If you do not specify a time, then the system will default the time to midnight in the time zone of the server.
- Click Submit. The access duration is set for the user.
- If you chose 'Access Period is Time Limited',
- Click Deny to reject the request for access from the user.
- If you want to directly add the user to the client/matter team, hover the cursor over a request row, and then click the Quick Approve button which displays upon hover. This adds the user as a Team Member with access for unlimited period.
- Click on the request row or select the check box next to a user.