How to manage identity now Admin Source specific to Client system
sourceName is IdentityNow Admins
Hi @bishnuparida ,
Could you please brief the requirement?
can you please share details for the attached source name - IdentityNow Admins
what is its uses , I just added one attachment screenshot
Hello, This source contains every adentity that will work for the deployment of the solution, after that, it should only contain the sailpoint services support, just to help if something is not working.
After the first go live, all external identities should be managed outside this source.
Regards,
Pablo
Hi Pablo,
1-how we can manage other admins of inow outside of this source?
2-with this source can we have service accounts or only human accounts?
Regards,
Bishnu
hello,
You should manage admin identities outside this source with their lifecycle state, it will provide you more control to who has access to the platform.
Also, just as best practice, this source should contain just the sailpoint service account and the others service account should be in other identity profiles.
Regards,
Pablo
Welcome to SailPoint community.
When ever any tenant is provisioned to a customer, SailPoint their default accounts who will require access in order to troubleshoot issues when you grant them the access to access your tenant. For these accounts to be available, there needs to be an authoritative source from where these accounts can be created as an identities and thus this source is available.
Regarding your question, how can you add new admin in ISC, you have different options here where either you can upload the admin accounts into this source only and then grant them the admin rights but make sure to keep these default accounts also in there. These will be the admin accounts who will work on initial setup of the tenant like configuring VAs or other authoritative sources for normal identities.
If you do not wish to touch this source, then you can also create another delimited source such that you can upload your admin accounts there but you will require then another identity profile so it will be better in my opinion to just use this source for the initial admin accounts.
If you have any other queries please let us know. I hope this helps.
Regards
Vikas.