Allow a population to use ISC only for self-service Password Reset?

Within the ISC tenant, there are multiple populations of different users. Is it possible to configure ISC to allow a particular population to ONLY use the Forgotten Password / Password reset flow, and nothing else? i.e. Don’t even allow them to login to see the dashboard.

Hi @David_Norris , if user doesn’t want to login to UI, Can I know why they need to change the password?

I believe you referring to Password Manager functionality for different Sources onboarded in SailPoint.

You create Access Profiles on a source, create Application and add Access Profiles to the application. Then user can see that Application under Password Manager.

This is the default behavior and can’t change.

Potentially, for downstream password sync.

Seeing options / GUI components that don’t concern certain users is just poor UI/UX.