# How to manage multi-source Applications and Access Profiles

**URL:** <https://developer.sailpoint.com/discuss/t/how-to-manage-multi-source-applications-and-access-profiles/17511>\
**Category:** SHF Discussion and Questions\
**Tags:** provisioning, identity-security-cloud, access-requests\
**Created:** [September 12, 2023, 4:27pm UTC](https://developer.sailpoint.com/discuss/t/how-to-manage-multi-source-applications-and-access-profiles/17511 "2023-09-12T16:27:32Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![alexandre\_mazars](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/alexandre_mazars/32/2860_2.png) [@alexandre\_mazars](https://developer.sailpoint.com/discuss/u/alexandre_mazars)\
**Post date:** [September 12, 2023, 4:27pm UTC](https://developer.sailpoint.com/discuss/t/how-to-manage-multi-source-applications-and-access-profiles/17511/1 "2023-09-12T16:27:33Z")

</div>

Hello to all of you,

We are starting to have some use cases where we need to provision rights in multiple sources for a single app :

For example SaaS solution with SSO :

- Access to app is managed in our Azure AD with a AAD group
- Access Profiles are managed inside the app using direct connectors

How can we manage this to publish access for the user into a single app in the request center ?

We thought of using roles for this, but it means that the notion of application will disappear or we need to have a very strict naming rule of our roles. In this model, we may have this :

- Role 1 : “App X : Access Profile A”

- Role 2 : “App X : Access Profile B”

Thanks in advance for your ideas

---

<div class="post-metadata">

**Author:** ![alexandre\_mazars](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/alexandre_mazars/32/2860_2.png) [@alexandre\_mazars](https://developer.sailpoint.com/discuss/u/alexandre_mazars)\
**Post date:** [September 18, 2023, 2:28pm UTC](https://developer.sailpoint.com/discuss/t/how-to-manage-multi-source-applications-and-access-profiles/17511/2 "2023-09-18T14:28:01Z")

</div>

No idea on this topic ? We really need to manage access to app with multiple sources, but we would like to avoid to use role for this ☹

---

<div class="post-metadata">

**Author:** ![KevinHarrington](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/kevinharrington/32/6776_2.png) [@KevinHarrington](https://developer.sailpoint.com/discuss/u/KevinHarrington)\
**Post date:** [September 18, 2023, 3:39pm UTC](https://developer.sailpoint.com/discuss/t/how-to-manage-multi-source-applications-and-access-profiles/17511/3 "2023-09-18T15:39:03Z")

</div>

What I’ve done in the past is to make the application and access requestable using the entitlements managed by the direct connector, then have a role that auto-assigns the Azure group if they have any of the entitlements in question. Or if there are a lot of entitlements use an account attribute like the email on the source contains “@” or something like that.

---

<div class="post-metadata">

**Author:** ![alexandre\_mazars](https://sea1.discourse-cdn.com/sailpoint/discuss/user_avatar/developer.sailpoint.com/alexandre_mazars/32/2860_2.png) [@alexandre\_mazars](https://developer.sailpoint.com/discuss/u/alexandre_mazars)\
**Post date:** [September 18, 2023, 3:52pm UTC](https://developer.sailpoint.com/discuss/t/how-to-manage-multi-source-applications-and-access-profiles/17511/4 "2023-09-18T15:52:16Z")

</div>

Hello @KevinHarrington,

Seems to be a good idea using an auto assigned role. This could work for the use case with Azure AD groups 😉

Do you have any idea on how to manage this kind of app if i have entitlement in multiple sources (for example in a database plus a web server) ?

---

<div class="post-metadata">

**Author:** ![system](https://global.discourse-cdn.com/sailpoint/original/2X/f/f2136700ed5e3703e0b85e02f6be799dacca7735.png) [@system](https://developer.sailpoint.com/discuss/u/system)\
**Post date:** [November 17, 2023, 3:52pm UTC](https://developer.sailpoint.com/discuss/t/how-to-manage-multi-source-applications-and-access-profiles/17511/5 "2023-11-17T15:52:48Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
