Request SailPoint roles from Service now only

Hello Folks

I have a requirement to request SailPoint Roles from service now only. it shouldn’t be requested from SailPoint.
User/manager can directly raise request from service now only, Shouldn’t be allowed from SailPoint even though Role is requested in SailPoint.

Thanks
Manan

@manan7108

SailPoint provides ServiceNow catalog Integration to request SailPoint access from ServiceNow. You can go through the below link to understand this integration.

Please let me know if you have any other queries on this.

Thanks,
Nikhlesh

in this case your org need to buy service now catalog in service now app store

Hi @nikhleshsdg

I have referred the documentation. Is there any way to stop requesting “Requested Roles” from SailPoint? Our requirement is that SailPoint Roles must be requested from servicenow catalogue only.

@Chaithu9110 : Servicenow catalog is already procured.

Our requirement is that SailPoint Roles must be requested from servicenow catalogue only.

sailpoint service now catalog buyed ?

@manan7108

I don’t think there is any OOTB way to do this. You have to make it requestable in ISC then only they will be visible in SNOW to request.

Does this mean that Users have access to ISC tenant?

Yes, this is already purchased. @Chaithu9110

Hi @nikhleshsdg

Users have access to ISC tenant. I agree that we need to make the roles requestable to reflect in service now.

Our main focus is to have only single process to request the required roles from service now. Service now should be in the front end to request roles where ISC in back end for provisioning purpose.

Hope this clarifies !

Hi @manan7108

Agreeing with @nikhleshsdg that I don’t think there is an OOB way to do it, I think it could potentially be achieved with custom css to hide the tiles. Again, there is no OOB way to apply custom css, so maybe a discussion with your SP rep to see if there is a way to get custom css onto your tenant?

Also, look at Limiting External Access Requests

Does your organisation is allocated with service now tool?

This can be achieved by completely disabling request anything from Sailpoint Request Center and making Service Catalogue the may source for requesting everything.

Please configure the below and let us know if this serves your purpose.

https://community.sailpoint.com/t5/IdentityNow-Articles/Best-Practices-Configuring-External-Access-Requests-with/ta-p/161436

Hi Manan,

yes, you can do this.

Create a segment and add all roles to that segment (can only at 50 at a time, but you can add all roles to a single segment)

Then leave the segment with zero identities in that segment.

It will take about 24 hours to take effect, but then all requestable roles will not be visible in SailPoint ISC, but will still be requestable from ServiceNow

Hi @j_place
Thank you so much for sharing this link.
This is what exactly I was looking for.
Thank you once again.

1 Like

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.