Prerequisites

  • MongoDB Atlas can only connect to a trusted IP address. Within Atlas, you must create a list of trusted IP addresses that can connect to IdentityIQ and be used to access data.

  • An Atlas API key is required to grant programmatic access to the MongoDB Project. This Atlas API key acts as the service account and is used to manage database users in each Project under a single Organization. The following permissions are required:

    Operation

    Permission

    Test Connection

    • Organization member

    • Project Read Only (For projects required to be managed)

    Account Aggregation

    Entitlement Aggregation

    Add/Remove Entitlement

    • Organization Owner

    Note
    If the list of managed Projects is long, assign Organization Read Only access instead of Project Read Only access for all Projects. This applies for Test Connection, Account Aggregation, and Group Aggregation processes.