Configuration
Use the Cloud Access Management configuration page to connect IdentityIQ to Cloud Access Management Services. To access this page, click gear menu > Global Settings > Cloud Access Management Configuration.
Enter your connection and configuration settings. Be sure to Save your changes.
Connection Information for Cloud Access Management Services
CAM Hostname
The hostname of the Cloud Access Management website for your organization. For example, https://<org>.cam.sailpoint.com
.
OAuth Token Hostname
The hostname of your IdentityNow tenant, which is used to create the Cloud Access Management access token using the Client ID/Secret. For example, https://<org>.api.identitynow.com
Client ID / Client Secret
The Client ID is the identifier associated with the Cloud Access Management API service. The Client Secret is the OAuth secret associated with the Cloud Access Management API service.
To obtain a personal access token from IdentityNow, see Managing Personal Access Tokens. To obtain a personal access token from the API, see the API docs for details.
Advanced
Read Timeout
The maximum time in seconds to wait for a response from Cloud Access Management APIs before failing.
Connect Timeout
The maximum time in seconds to wait for a connection to succeed to Cloud Access Management APIs before failing.
Testing the Connection
Once your configuration details have been entered, you can click Test Connection to verify that the connection information is valid and that IdentityIQ can successfully connect to Cloud Access Management.
If you are using an HTTP or HTTPS proxy for IdentityIQ's communications, and you want to make an exception for connecting to Cloud Access Management Services, you can configure your Cloud Access Management connection to bypass the proxy connection by adding this key to the CAMConfiguration object:
<entry key="ignoreProxyProperties" value="true" />
Event Properties
After Cloud Access Management has been installed and configured, it can start receiving events. By clicking this button, Cloud Access Management is notified to start sending data. After the data has initially been received, Initiate Events can be clicked again to request all data.