Forum Posts

SAML SSO - Multiple IDP

Could someone please share a working AuthenticationConfig.groovy file with MULTIPLE IDP configuration? We tried following the same steps as mentioned in the documents. But see the error below. caused by: org.springframework.beans.factory.BeanCreation...

Mareetta by New Contributor III
  • 67 Views
  • 1 replies
  • 0 kudos

Connecting to Adobe using JWT

We need to connect to Adobe User Management API using JWT authentication. However, to get the JWT token, we need to get the private key and certificate which expires every day. Hence, we want to know if it's feasible to get the private key dynamicall...

Provisioning issues

Hi,I am getting the below errors while provisioning the entitlements for AD and Saviynt. Accounts assignment tasks are getting competed but the entitlement tasks are not getting completedAD:Error while ADD operation for account-XXXX to Group-Entitlem...

Screenshot 2023-03-02 at 14.44.02.png
HarishG by New Contributor II
  • 99 Views
  • 4 replies
  • 0 kudos

Resolved! SMTP email server settings

Hi,We need to update email server settings to SMPT configuration (to office365)I have added the configuration in Admin > settings > email sever settings, as belowBut when i try to save and test connection, i get the below error.Is there anything else...

Screenshot 2022-11-01 at 11.35.29.png Screenshot 2022-11-01 at 11.33.24.png
HarishG by New Contributor II
  • 144 Views
  • 3 replies
  • 0 kudos

Generate User Email On company change

Hi,We have a requirement on updating user email on their change of company and need a logic or a workaround for the same.We have around 82 companies at the moment of which 77 companies have the same email domain, except the leftover 5 companies which...

AshishDas_0-1672816763731.png
AshishDas by Regular Contributor
  • 56 Views
  • 1 replies
  • 0 kudos

Reconciliation for Shared Mailboxes

Hi,We have created Shared Mailboxes on a hybrid environment, where the shared mailboxes could be reconciled via AD reconciliation. However, we cannot see the delegates who are part of those Shared Mailboxes in AD.Is there a way to reconcile the deleg...

AshishDas by Regular Contributor
  • 45 Views
  • 1 replies
  • 0 kudos

Resolved! Dataset values more than 10000

Hi,We have around 18000 departments which we wish to populate in a dropdown in the create user form from a dataset table that we have imported.However, dataset gives us a threshold of only 10k lines of entries.Any workarounds for this use case?Can we...

AshishDas by Regular Contributor
  • 132 Views
  • 5 replies
  • 0 kudos

Refresh token lifetime

What is the default lifetime of 'Refresh_Token' and 'Access_Token' that we get when calling Saviynt /login ? And, where can change this default lifetime?Can we set the lifetime of just 'Refresh_Token'?

RV by New Contributor
  • 65 Views
  • 1 replies
  • 0 kudos

Resolved! Campaign Query

Hi,We have a requirement to relaunch a campaign for all users whose campaign response was ' No Response'.We have selected to revoke tasks for certified users on campaign expiry and hence, for users for whom 'No Response' was selected, we need to rela...

AshishDas by Regular Contributor
  • 181 Views
  • 7 replies
  • 0 kudos

Azure AD SSO error in configuration

Hi Team,I am configuring SSO with Azure AD following below URL and getting below error in the logs. Please not i am not using SP side (Saviynt side) certificate as it is optional and I do not want the requests to be signed - https://saviynt.freshdesk...

REST API calls using HMAC authentication

Dear,We have a requirement to invoke API call which uses HMAC. And to create authentication, we have to run a custom java code which encrypts the data. We have tried in Postman using 'Pre-Requisite script' option and worked well there. Now, we have t...

jdoma by Regular Contributor
  • 81 Views
  • 2 replies
  • 0 kudos

REST API - Authentication - Digitally Signed

Does Saviynt has/support Client certificate based authentication or use of digitally signed access tokens, in addition to the submission of API Key/Secret (password) and ID ? Is the access token issued by the login service digitally signed access tok...

RV by New Contributor
  • 56 Views
  • 0 replies
  • 0 kudos

Modify account attributes

Hi,We have a technical rule- detective, for assigning an account and access of a particular Application.Then the account is provisioned using Provisioning Job(WS RETRY)Now, we have a dynamic attribute set within the Application, such that only certai...

HarishG by New Contributor II
  • 73 Views
  • 1 replies
  • 0 kudos

SSO - AuthGroovy parameters

Hello,We are attempting to set up AzureAD SSO on v2021, with a Single IDP set up. We are referencing the documentation here - https://saviynt.freshdesk.com/support/solutions/articles/43000661162-saml-metadata-files#SAMLMetadat....What should the valu...

sushmita by Regular Contributor
  • 153 Views
  • 4 replies
  • 0 kudos

Resolved! SSO Configuration

Hello,I have a few questions I need clarification on;How do we set up default roles for users who are not in Saviynt but will be created for the first time upon signing in to Saviynt via SSO?How do we disable SSO configuration in Saviynt in case ther...

Goodness by Regular Contributor
  • 183 Views
  • 4 replies
  • 0 kudos

SAP SuccessFactor connectivity issue

 Hi,Below is the SAP SuccessFactors connection json used in Saviynt and throws 401 error. But through API client I can able to connect and retrieve data  also. Is there any config I missed? {"authentications": {"userAuth": {"authType": "oauth2","url"...

bala by New Contributor II
  • 133 Views
  • 2 replies
  • 0 kudos

AD connector JSON duplicity check

Hi Team ,  I wanted to know if we can check for duplicity check with non mandatory attribute in AD like employeeID ? I tried Check for unique parameter from AD connector guide but it didn’t help . I added something like EmployeeID: ${user.username)pl...

Ankyt19 by Regular Contributor
  • 336 Views
  • 10 replies
  • 0 kudos

Azure AD SSO

Hi there,Is it possible to do User Group to Role Mapping using grails.plugin.springsecurity.saml.userGroupToRoleMapping property? If so, can you please suggest how this is done? We have raised 2 tickets with Saviynt support, one saying it's possible,...

Could not decode token- Invalid JWS

Hi,I am getting the below error when i import users from connection.Logs:2022-08-08 07:44:07,704 [quartzScheduler_Worker-2] DEBUG rest.RestProvisioningService - responseError : Could not decode token: The token "AiOiJKV1QiLCJhbGciOiJIUzI1NiJ9.eyJpc3M...

Harish7 by New Contributor II
  • 168 Views
  • 5 replies
  • 0 kudos

AD endpoint filter for accounts

Hi Team,I need your help in knowing if we can have multiple endpoint for one single connection where when we do import (recon) based on certain condition like country it should link the user with respective endpoint .Example:Endpoint 1  (India)Endpoi...

Ankyt19 by Regular Contributor
  • 396 Views
  • 10 replies
  • 0 kudos