Announcing the Saviynt Knowledge Exchange unifying the Saviynt forums, documentation, training,
and more in a single search tool across platforms. Read the announcement here.

Using endpoint entitlements and accounts in other endpoint

Robbe_Cronos
Regular Contributor II
Regular Contributor II

We have Keycloak setup in our company to federate other applications. What this means practically is:

When a user wants access to a specific application, he has to request a specific group of our keycloak endpoint.

It isn't very optimal to request every group needed in the keycloak endpoint as many people don't know how to traverse the Saviynt application that well.

We want to have an endpoint for every application that uses Keycloak groups for access, using the Keycloak connection and security system. In this endpoint, only the Keycloak group needed to access that application is given as an option to request. This endpoint will use Keycloak accounts and entitlements.

Is this possible to configure?

Kind regards,

Robbe

 

1 REPLY 1

rushikeshvartak
All-Star
All-Star

Configure keycloak as mapped endpoint. If user don’t want to know about keycloak account then use entitlement map / application role 


Regards,
Rushikesh Vartak
If you find the response useful, kindly consider selecting Accept As Solution and clicking on the kudos button.