Targeted Certifications Cloud Filtering

When integrated with IdentityIQ, Cloud Access Management allows the user to define a Targeted Certification to specify cloud specific selection criteria for Roles and Additional Entitlements.

The selection criteria for Targeted Certifications is used to decide which entitlements and / or roles will be included as certifiables when the certification is generated.

Note: New search criteria have been added for Additional Entitlements. All new search criteria will appear as a pull-down option. They will only appear if Cloud Access Management is enabled.

  • Cloud Access Scopes – matches ManagedAttributes which have any of the given scopes indirectly from their Cloud Access Manager groups or roles.

  • Cloud Access Roles – matches ManagedAttributes which map to any of the given roles directly or indirectly from their Cloud Access Manager groups.

  • Cloud Access Groups – matches ManagedAttributes which map to any of the given groups.

  • Cloud Provider – matches ManagedAttributes which have a Cloud Access Manager group or (indirectly) a Cloud Access Manager role with any of the given clouds set directly.