Hi SailPoint Community,
I’m reaching out to ask for your support and insights on an issue I’m encountering with the Microsoft Entra ID SaaS connector in IdentityNow.
What I’ve done so far:
- Successfully integrated Microsoft Entra ID with IdentityNow following the official guide:
Integration documentation - Completed App Registration in Entra ID and granted the required API permissions:
Directory.Read.All
andDirectory.ReadWrite.All
Permissions reference - Aggregation of accounts and entitlements is working as expected.
My goal:
I need to provision B2B (guest) users from Identity Security Cloud (ISC) .
Create B2B Provisioning Policy configuration:
- I’ve set up the provisioning policy based on this documentation:
Create Guest User (B2B) Account Policy - See attached screenshot of my current policy configuration:
The issue:
When I try to assign an Entra ID entitlement (e.g., Security Administrator or any other type of entitlement) to trigger the creation of a B2B account via the previously defined provisioning policy, I get a generic error with no detailed message or logs
Has anyone else run into this issue?
I’d really appreciate any guidance, suggestions, or even things to double-check in the provisioning flow.
Thanks in advance for your help!
Kind regards,
Paolo