Provisioning Policy Attributes
This section describes the provisioning policy attributes for Create and Update Account.
Note
The confidentialityLevel
attribute must be configured in the new application provisioning policy with the following details:
-
Type as String
-
Review required
For better governance, ensure that the value of the confidentialityLevel
attribute is same as the managed system.
Create Account
The following table lists the provisioning policy attributes for Create Account:

The user name associated with the account. The value of the user name field must be unique within target Cerner Millennium domain [1- 48 characters]

The password for the user account. Any value, assuming that value meets all criteria defined in the Cerner Millennium password policy maintained in AuthView. The password is only required when the user being provisioned is a non-LDAP user (when the user will authenticate against the Cerner Millennium user directory).

Given (first) name for the personnel.

Surname (last name) for the personnel.

The confidentiality level set for organization or organization groups.
Update Account
The following table lists the provisioning policy attributes for Update Account:

The confidentiality level set for organization or organization groups.
Dormant Account Support
If you want to remove the user name and not disassociate an account, clear the Disassociate Account checkbox on the Advanced Settings page.
To remove the user name, configure the following attribute in the provisioning policy:
<entry key="disassociateAccount" value="true"/>
If you set the attribute to true
, the source removes the user name and disassociates the account from personnel. This disassociated user name can then be assigned to any other account.
Provisioning Additional Attributes
The following are additional provisioning attributes:

To provision personnelAlias
through update account provisioning policy, enter the input format for attribute as follows:
beginEffectiveDateTime=2021/10/01#~#endEffectiveDateTime=2100/12/30#~#alias=677001#~#type=DOCDEA#~#aliasPool=DEA

To provision credential
through update account provisioning policy, enter the input format for attribute as shown in the following example:
name=BLS#~#type=Certificate#~#renewalDateTime=2035/01/01#~#state=NY#~#beginEffectiveDateTime=2021/10/01#~#endEffectiveDateTime=2100/12/30#~#addToNameIndicator=true

To provision address
through update account provisioning policy, enter the input format for attribute as shown in the following example:
streetAddr=1200 Northside Forsyth Dr#~#streetAddr2=Times Square#~#addressTypeCd=Business#~#state=NY#~#city=Cumming#~#zipCode=30041#~#beginEffectiveDateTime=2021/10/01#~#endEffectiveDateTime=2100/12/30

To provision phone
through update account provisioning policy, enter the input format for attribute as shown in the following example:
phoneNumber=0001112222#~#phoneType=Business#~#phoneFormat=FreeText#~#extension=09#~#description=A phone number#~#beginEffectiveDateTime=2021/10/01#~#endEffectiveDateTime=2100/12/30

To provision roleProfile
through the update account provisioning policy, enter the input format for attribute as shown in the following example:
position=0001112222#~#display=Displayname#~#beginEffectiveDateTime=2021/10/01#~#endEffectiveDateTime=2100/12/30