Create Account

Prerequisite: Identity Security Cloud Governance is configured for provisioning.

When SailPoint provisions new accounts to the Identity Security Cloud Governance source, it uses the attributes on the Create Account page as instructions or a template for what to include in the account. Each source can have its own configuration that specifies which attributes to include in account creation and how to set their values. SailPoint pre-defines this for most source types, but you can edit the way the attributes are mapped.

When new access is granted on a source where a user does not already have an account, Identity Security Cloud automatically includes account creation in the provisioning. This applies whether provisioning started from an access request or from automated role or lifecycle state assignment.

For a direct-connect source, Identity Security Cloud automatically creates the account from this configuration. If it is not configured as a direct-connect source, Identity Security Cloud creates and assigns a provisioning task to the source owner and includes the values for the source owner to use in manually creating the account.

Warning
This section describes the configuration of the default Create Account. However, SailPoint recommends that you work with Services to define a Create Account specific to your company's needs. Be sure to verify large changes to the provisioning policy before implementation. Failure to do so may result in your provisioning to fail.

Provisioning Attributes

The following list outlines which account attributes SailPoint uses to create a profile for new Identity Security Cloud Governance accounts:

Account Attribute

Type

Generator

Description

id

String

Identity Attribute

The unique ID (username) used as login.

Note
The id attribute under the Create Account profile should contain the id of an identity from the Identity Security Cloud (ISC), which is configured under Connection Settings of the ISC Governance source.