Provisioning

Prerequisite: Identity Security Cloud is configured for provisioning.

Create Profile / Provisioning Policy

When SailPoint provisions new accounts to the Box source, it uses the attributes on the Create Profile page as instructions or a template for what to include in the account. Each source can have its own configuration that specifies which attributes to include in account creation and how to set their values. SailPoint pre-defines this for most source types, but you can edit the way the attributes are mapped.

When new access is granted on a source where a user does not already have an account, Identity Security Cloud automatically includes account creation in the provisioning. This applies whether provisioning started from an access request or from automated role or lifecycle state assignment.

For direct-connect sources, Identity Security Cloud automatically creates the account from this configuration. If the source is not configured as a direct-connect source, Identity Security Cloud creates and assigns a provisioning task to the source owner and includes the values for the source owner to use in manually creating the account.

Warning
This section describes the configuration of the default Create Profile. However, SailPoint recommends that you work with Services to define a Create Profile specific to your company's needs. Be sure to verify large changes to the provisioning policy before implementation. Failure to do so may result in your provisioning to fail.

Provisioning Parameters

The following generators create required information for a new Box account. You might need to edit the contents.

Note
Parameters marked with an asterisk (*) are mandatory.

Account Attribute

Generator

Description

name*

Display Name

Name for the enterprise user.

login*

Work Email

Login ID of the enterprise user.

space_amount

Static

Space to be allocated to the user in gigabytes.

unlimited

Static

Unlimited space amount.

role

Static

Box user role as co-administrator/user.

status

Disable

Enabled or disabled status for the user.