Hello there!

Need Help? We are right here!

miniOrange Email Support
success

Thanks for your Enquiry.

If you don't hear from us within 24 hours, please feel free to send a follow-up email to info@xecurify.com

Search Results:

×

Admin By Request Provisioning and Deprovisioning



Admin By Request SCIM Provisioning allows to create account in a simplified way and link Admin By Request users' account to their existing or new apps. Admin By Request Provisioning automates user provisioning with their identities.

Provisioning saves time when setting up new users and teams, and also manages access privileges through the user lifecycle. miniOrange can create, read, and update user accounts for new or existing users, remove accounts for deactivated users, and synchronize attributes across multiple user stores.

Admin By Request SCIM User provisioning and deprovisioning actions are bi-directional, so you can create accounts inside an external application and import them into miniOrange, or alternatively create the accounts in miniOrange and then push them out to any linked external applications.

Admin By Request SCIM Deprovisioning means deleting a user and removing their access from multiple applications and network systems at once. Deprovisioning action is triggered when an employee leaves a company or changes roles within the organization. The deprovisioning features increase your organization's security profile by removing access to sensitive applications and content from people who leave your organization.


Admin By Request scim provisioning diagram

Provisioning & Deprovisioning Scenarios


miniOrange provides Provisioning solutions for all scenarios of user management (provisioning), which includes AD Integration, LDAP Integration and automated provisioning for all External Applications such as Admin By Request, Google Workspace, Workday, etc



Follow the step-by-step guide given below to setup Admin By Request Provisioning

1. Configure Provisioning in Admin By Request

  • Login to your Admin By Request User Portal.
  • Go to the to the SCIM Provisioning Setup page.
  • Under the section 1. Configuration, select the Regenerate button to generate a new API key.
  • Admin By Request SCIM Provisioning: Regenerate API Key

  • Click the Copy icon in the right of the SCIM API key and SCIM URL and save these values which we will require later in Step 2.
  • Admin By Request SCIM Provisioning: Regenerate API Key

  • Click on Save to ensure that new API key is used.

2. Configure SCIM for Admin By Request in miniOrange

  • If you are using any external IDP and just want to enable provisioning through us:
    • Go to Apps >> Provisioning >> Create a SCIM 2.0 App for Admin By Request.
    • Admin By Request SCIM Provisioning Select Provisioning

      Admin By Request SCIM Provisioning Configuration

  • If you want to enable SAML authentication + SCIM both:
    • Go to Apps >> SAML >> Admin By Request.
    • Create SAML app

      Select Admin By Request app

    • In the Provisioning section, enter the following values which we saved from above step.
    • SCIM Base URL: SCIM URL
      Bearer Token: SCIM API key
      Admin By Request Provisioning configuration

3. Add Attribute Mapping

  • Add the following attributes:

    Target Attributes miniOrange Attribute
    userName DEFAULT USER PROFILE ATTRIBUTE Username
    Name DEFAULT USER PROFILE ATTRIBUTE name
    name.givenName DEFAULT USER PROFILE ATTRIBUTE First Name
    name.familyName DEFAULT USER PROFILE ATTRIBUTE Last Name
    Name.formatted DEFAULT USER PROFILE ATTRIBUTE name
    emails DEFAULT USER PROFILE ATTRIBUTE E-Mail Address
    emails.value DEFAULT USER PROFILE ATTRIBUTE E-Mail Address
    email.primary DEFAULT USER PROFILE ATTRIBUTE E-Mail Address
    Title DEFAULT USER PROFILE ATTRIBUTE title
    Department DEFAULT USER PROFILE ATTRIBUTE department
    preferredLanguage DEFAULT USER PROFILE ATTRIBUTE language
    Active DEFAULT USER PROFILE ATTRIBUTE active
  • In Enable Provisioning Features, you can enable any feature below.
  • Enable Admin By Request Provisioning Features

  • Click on Save button.

4. Create Group

  • Go to Groups > Create Group. Enter the Group Name and click on Create Group button and the group will be created.
  • Admin By Request provisioning create group

5. Add Policy

  • In the Policies section, navigate to Add Policy tab.
  • In Select Application section, select the application you have created in step2.
  • In Configure Settings section, select the group you have created in step4 and enter the policy name with the required login method.
  • Click on Save button.
  • Admin By Request Provisioning Add policy

6. Add Users

  • Go to Users > Add User.
  • Enter the Users Details and the user will be created.
  • Admin By Request Provisioning Add User

7. Assign Users

  • Go to Groups.
  • Assign the users to the Group you have created in step4.
  • Admin By Request provisioning assign users

8. Update Users

  • To update user profile, Go to Users >> User List.
  • Select a particular user and in Actions dropdown select Edit.
  • Admin By Request Provisioning Select Edit User

  • Fill out user updated information and click on Save button.
  • Admin By Request Provisioning Edit User

9. Delete Users

  • To delete user, Go to Users >> User List.
  • Select a particular user and in Actions dropdown select Delete.
  • Admin By Request Provisioning Select Delete User

  • A pop up will appear in which click on Yes button.
  • Admin By Request Provisioning Delete User



View Provisioning Reports

How to access Provisioning Reports?

  • Navigate to the Reports in the left-hand navigation pane and select Provisioning Report.
  • Provisioning Report

  • Filter the reports by specifying Enduser Identifier and Application Name criteria. Additionally, choose the desired timespan for the reports. Once done, click on the Search.
  • Search Provisioning Report

  • Alternatively, you can directly click on Search to retrieve all provisioning reports based on time without applying any specific filters.


External References

Want To Schedule A Demo?

Request a Demo
  



Our Other Identity & Access Management Products