Announcing the SAVIYNT KNOWLEDGE EXCHANGE unifying the Saviynt forums, documentation, training, and more in a single search tool across platforms. Click HERE to read the Announcement.

AD - Role provision and Deprovision for CPAM

Aprakash
New Contributor
New Contributor

Hi Team,

is there any KB which will have step by step instruction for AD-Role provision and deprovision for CPAM enabled account.

 

3 REPLIES 3

NageshK
Saviynt Employee
Saviynt Employee

@Aprakash : Thanks for posting your question. For Role provisioning, you will have to first create Emergency Access (FireFighter) Roles and assign AD Endpoint's Entitlements (AD Groups) to those Roles. Please follow the below articles to create and configure your roles. Once done, end users will start seeing the Roles under the AD Endpoint via the flow of New Privilege Access -> AD Tile and "select role" button against the required AD Endpoint. 

https://docs.saviyntcloud.com/bundle/AAG-Guide/page/Content/Role-based-emergency-access.htm


https://docs.saviyntcloud.com/bundle/EIC-Admin-v23x/page/Content/Chapter13-Access-Requests/ars-set-u...

Thanks,

Nagesh K

What will be the below parameter jason value, could you please help

  • UPDATEACCOUNTJSON

NageshK
Saviynt Employee
Saviynt Employee

@Aprakash Please see the section "updating an account" in this article. This field can be customized and there is an example given for using an if-else statement as well

https://docs.saviyntcloud.com/bundle/AD-v23x/page/Content/Configuring-the-Integration-for-Provisioni...

Thanks,

Nagesh K