Required Permissions
A user with ORG_ADMIN user level access is required with the following scopes to perform necessary operations:
|
Operations |
Scopes |
|---|---|
|
Test Connection |
sp:scopes:default |
|
Aggregation |
idn:identity:read idn:identity:manage idn:workgroup:read |
|
Enable/Disable |
sp:search:read idn:accounts:read idn:accounts:manage idn:accounts-state:manage idn:account-provisioning:manage |
|
Governance Groups Aggregation |
idn:workgroup:read |
|
Add/Remove Identity Security Cloud Governance Groups |
idn:workgroup:manage |
|
Add/Remove Identity Security Cloud User Levels |
sp:auth-user:manage |
|
Add/Remove Identity Security Cloud Roles |
idn:role-unchecked:manage |
|
Disable with Reassign |
idn:access-profile:manage idn:sources:manage idn:workgroup:manage idn:entitlement:manage sp:workflow:manage idn:campaign:manage idn:access-request-approvals:manage |