AWS Identity center has EntraID identity provider. While integrating with Sailpoint, facing 2 issues. - How a EntraID group could be treated as Identity - We want the end user to request for the accountpermissionset to their EntraID group . How to achieve? the AWS ciem is good for reading the permission. However the provisioning is not possible. All we want to assign permissionset to account for the requesting identity.