Prerequisites

Before you configure your credential provider, you must consider the following prerequisite items.


This is the companion discussion topic for the documentation at https://documentation.sailpoint.com/connectors/cred_providers/cyberark_central/help/credential_providers/cyberark_central/prerequisites.html

Hi Team, Can you provide more info on the certificates for CyberArk CCP for credential management. I am not able the use my tenant url as the CN for generating the certificates, as the subdomain doesn’t allow our Certificate Authority as CA, I am assuming this is because the certs are managed by AWS for ISC. In such cases what can be my CN for certificates for CyberArk CCP.

Hi Kiran! Thank you for your input. We’ve created a Jira issue to track the effort and we’ll update the comment thread when it’s been addressed: CONDOCS_8539- Jira

Hi Kiran,

CyberArk CCP is an on-premises server, so the certificate should be generated using the Common Name (CN) of the CCP server hostname itself not the ISC tenant URL.
Answer- The certificate Common Name (CN) must match the CCP server hostname, NOT the tenant URL.

Additionally, there are publicly available CyberArk CCP documents that outline the certificate requirements and connection process, which you may find helpful during the setup. For more information ,refe to Application authentication methods
Thank you for your understanding and support throughout the process!
-Sayali.