I have integrated active directory to identitynow and have aggregated all the AD accounts to INow. Now, I’m looking to execute a use case to deprovision user access and disable the account when user is termed.
I think i need to use before provisioning rule here. Is there any other way of executing this other than before provisioning rule.
The simplest way to achieve this would be yo use Identity Lifecycle states to trigger Disable operation on AD account when an identity switches to “Termed” LCS.
If i’m not wrong, during the access review process, when certifier rejects the user access, Identitynow will automatically revoke the access from the respective connected source