IDN - Aggregating CyberArk Safe into IDN

Referencing back to this post, as per this post, IDN cannot pull the safe from CyberArk. Is it still true? I am using the CyberArk Privilege Cloud Shared Services connector for the integration.(Integrating SailPoint with CyberArk Privilege Cloud Shared Services)

I see another posting mentioning that @colin_mckibben can you confirm?

The reason for that is due to the SCIM API’s exposed by CyberArk. It allows aggregation of groups that inturn contains safes.

1 Like

Thanks for the confirmation. I have also heard that you can aggregate safes once feature flag is enabled on CyberArk Side, is that the case?

1 Like

Its not about the flag. In case we want to bring in safe, the concept is called as “group management” on SailPoint’s side. That means, users will also want to manage these groups in the future (create, update, delete, assign/unassign etc.) and associate them to accounts. That is where you will have an explosion of such relationships which is a current gap in the ISC platform.

ISC PM teams have a roadmap on this ask. This is just not a CyberArk ask but when built would help many other systems like AD, Mainframes etc.

1 Like

Thanks Deepesh for the explanation.

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.