Upgrading to v5.0
This section lists points to be considered while upgrading from any previous version to v5.0 or upgrading through v5.0.
Note
This page does not capture changes to the product of other versions.
This release has multiple improvements and code fixes to v5.0 which had a significant architectural change.
SailPoint recommends admins go through the release notes of this release and update the related setup as per business needs.
ISC Certification Support
The ServiceNow Certification Portal for Identity Security Cloud enables designated people to review users’ access to your enterprise systems and data. Certifiers determine whether the access is appropriate for those users or if access should be revoked. Certifiers will review certifications, approve or revoke access, and sign off on decisions
This ServiceNow portal focuses only on ISC’s Certification Review Process.
This works independently to the request process. OAUTH2 authentication is mandatory for this integration. Setup parameters for certification can be ignored if this process is not used in your implementation.
Enabling this functionality in the ServiceNow instance requires you to follow these activities:
-
Ensure the Identity Security Cloud Links now include the APIs related to Certification.
-
Refer to the Configuring Connection Parameters for Certification.
-
Configure the ISC Certification page or use the widgets related to Certification in your custom page.
-
Assign appropriate roles to access this page and functionality.
Note
Version 5.0 supports limited features of the Certification interface. Additional features will be added in upcoming releases.
-
Role Composition Certification Campaign is not supported.
Multi account support
Note
With the multi-account feature, validation of existing access will no longer be performed.
SailPoint ISC is designed to correlate multiple accounts belonging to the same human to a single "identity." This is crucial for maintaining a unified view of a user's access across various systems, even if they have different accounts in the same application.
SailPoint has recently added "Multi-Account Support" in the Access Request flow. With v5.0, similar functionality can be achieved through ServiceNow using this version of the Catalog App. This means that when a user has more than one account on a source, the requester is prompted to choose which specific account to provision access to. This applies to Roles and Entitlements as per the design of ISC.
This also applies to access revocation from the appropriate account for roles. Ability to revoke for entitlements will be introduced in a future release.