Create Profile / Provisioning Policy

When Identity Security Cloud provisions new accounts to an IBM i direct connect source, it uses the attributes on the Create Profile page as instructions or a template for what to include in the account. This page is also referred to as the provisioning policy.

Important
This page describes the configuration of the default Create Profile. However, SailPoint recommends that you work with Services to define a Create Profile specific to your company's needs.

The following generators create required information for a new IBM i account. You might need to edit the contents.

Account Attribute

Generator

Description

USRPRF

Create Unique Account ID

The User profile. This generator uses the value in the Pattern Used field to generate a unique DN for the new account.

Caution
You must change the OU in the Pattern Used field in the distinguishedName attribute.

GRPPRF

Static

The profile of the group used.

UID

Disable

The identity of the user.

USRCLS

Disable

The user class.

password

Create Password

This generator creates an initial password for the new account that matches the password policy assigned to the associated IBM i source in Identity Security Cloud.

PWDEXP

Disable

Expiration of the password that you set up.