Saviynt unveils its cutting-edge Intelligence Suite products to revolutionize Identity Security!
Click HERE to see how Saviynt Intelligence is transforming the industry.
Saviynt Copilot Icon

How to change account names in disconnected systems?

Jari_K
New Contributor III
New Contributor III

Hi,

We have a requirement for account names for disconnected systems to match user email which is used as userPrincipalName in AD and Entra ID.

When users firstname or lastname changes the email is also changed. For connected systems it is easy to provision new email & userPrincipalName and update accountname based on import. But how to accomplish this with disconnected endpoints?

Update account task can of course be triggered based on user update rules but it will not change the account names in the endpoints?

Please advise how to update current email to account names in disconnected endpoints? Use case for this is to enable SSO with new userPrincipalName to target systems (notify provisioning owners to manually update target system) and keep data in sync in general.

 

4 REPLIES 4

NM
Honored Contributor III
Honored Contributor III

@Jari_K to update the account name in saviynt you can use enhanced query 

To change in target you can configure a report and send it over to the concerned team so that they can make the changes manually on target end.

Jari_K
New Contributor III
New Contributor III

Account names should be changed in Saviynt and target systems when user email is changed.

How to define enchanced query to run on specific users and their accounts on specific endpoints automatically?

So you are saying that we should create a report per endpoint to send it to correct provisioning owners? Saviynt doesn't provide any other way to tell provisioning owners that account name should be changed and what new account name should be?

NM
Honored Contributor III
Honored Contributor III

@Jari_K email are in respect to user profile so app owners won't know.

2) you need to get the list of users whose email were changed.

 

  • Once email address has been updated you can use user's customproperty as flag. based on flag you can build enhanced query to update accounts account name to new email

Regards,
Rushikesh Vartak
If this helped you move forward, click 'Kudos'. If it solved your query, select 'Accept As Solution'.