Which IIQ version are you inquiring about?
8.3p4
Share all details about your problem, including any error messages you may have received.
Hi everyone,
I’m exploring an integration pattern where Salesforce will act as the front-end UI for managing access requests for a specific type of Identity in SailPoint IIQ. The business wants Salesforce users to:
-
Search for identities
-
Search and display only applicable roles/access items (filtered based on identity type)
-
Submit access requests from within Salesforce
Once the request is submitted in Salesforce, it needs to be sent to SailPoint so IIQ can:
-
Receive the request
-
Trigger the appropriate workflows
-
Perform provisioning as usual
I’m trying to determine the best-practice approach for exposing IIQ data and services to Salesforce. Some questions I’m considering:
-
What’s the recommended way for Salesforce to retrieve identity and role data from IIQ?
Would exposing selected SailPoint REST APIs be the right approach, and how should I securely limit role visibility? -
What is the cleanest method for IIQ to receive submitted request data from Salesforce?
Should Salesforce call an IIQ REST API endpoint, do we use workflow triggers, or is there a preferred integration pattern for this type of request orchestration? -
Any guidance or lessons learned from anyone who has implemented Salesforce → SailPoint IIQ access request integrations would be greatly appreciated.
Open to best practices, architectural suggestions, or alternative approaches. Thanks in advance!