I believe the section regarding Using External Authentication for Password Resets and Account Unlocks is incorrect. I just attempted to enable external Authentication having followed the instructions and the ‘By authenticating with an external identity provider’ method is not available.
Hi Blaise! Thank you for your input. This appears to be related to using the product features. I’ve moved your comment to our ISC Discussions and Questions category for greater help from the community in verifying your settings. If the documentation is inaccurate, we’ll create a ticket to make sure it gets updated.
Yes I agree. Current Identity Profile UI doesn’t provide any option to select External authentication for Password resets and Account Unlocks. I think the documentation needs to be updated.
@rebekah_reveile, how long would it take to get this this verified? I opened a support case as well, but I am being told this is an Expert Service request.
It would be helpful if SailPoint could verify this documentation internally. As it stands, the process described seems straightforward and should be easy to confirm. I am being directed to community or paid services for validation but am wondering if we could we get this addressed more efficiently.
Hey @bostelmann, quick follow-up question during our investigation: Can you tell me, do you have your service provider configs setup? Our understanding is that it should appear once that is so. Let us know.
Hello @colin_mckibben,
I have configured Identity Security Cloud as a Service Provider as directed here.
Below is a capture of the current configurations. I have also validated the configurations are correct and can successfully log in using the Identity Provider for authentication.
Are you able to see the option to auth with an external provider now?
Thanks Blaise—let me talk to the PM and see if this is a bug, or if it was removed from our functionality and we should remove it from the docs as well.
We’re on the case!
Hi Blaise- Thanks for raising this to our attention. We deprecated support for Ping Federate late last year and it was the only IDP that was leveraging that feature, so the feature itself is no longer present. We’ll have it updated in the docs today. I’m sorry for the confusion it caused!
Please let us know if you have any questions.
Jeremy
ISC Product Management
Hello @jeremy_southerland,
Thank you for your response! It is unfortunate that SailPoint has chosen to deprecate the feature as it would have allowed us to support authentication via push notifications.
I am not too sure what Ping Federate has to do with this as documentation did not indicate any required IdPs. If we use a different IdP would it work?
Can you provide any communication from SailPoint detailing the deprecation of support for this feature? I understand IdentityNow being SaaS allows SailPoint make changes as needed, but I would be concerned if there was not any communication.
Hi Blaise! After confirmation from the product manager that this functionality was deprecated, we’ve removed this section from the documentation.
You can check out the updated doc here: Configuring User Authentication for Password Resets - SailPoint Identity Services
If you don’t see the changes right away, try clearing your cache and refreshing the page.
Thank you for helping us make the docs better!
Hi @bostelmann and @magicmike, the Ping Federate integration was removed because there was zero adoption and it was built on architecture that we are deprecating. When we look to bring PingOne on board, we can re-evaluate returning the functionality.
Thanks!
Jeremy
This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.