Users Request and Provisioning Flashcards
(81 cards)
What is #1 defining?
Quicklinks
Who can request for this Quicklink.
Creating a group of users for this quicklink.
What is #2 defining?
Quicklinks
Which users can be targeted/request access for.
Creating a group of users for this quicklink.
What is #3 defining?
Quicklinks
What can be requested (access).
Creating a group of users for this quicklink.
What can you request with #1.
Add or remove roles/entitlements
What can you request with #2.
Request, delete, modify accounts.
What can you request with #3.
Changed passwords on managed systems or IdentityIQ
Important note to know about access given in Quicklinks.
Access is cumulative
List possible Provisioning Policies.
CUUPEDD
- Create
- Update
- Unlock
- Password
- Enable
- Delete
- Disable
Where do you go to Configure Account Dependency
Navigate to Applications > Application Definition in the IdentityIQ UI.
Select the application for which you want to define dependencies.
Go to the Provisioning Policies tab.
Under Application Dependencies, specify the dependent applications and their required fields.
Lifecycle Event possible Event Types
CRAMRAN
- Create
- Rule
- Attribute Change
- Manager
- Rapid Setup
- Alert
- Native Change
List the IdentityIQ actions that can trigger provisioning
User Initiated Actions
System Initiated Actions
Lifecycle Event-Driven Provisioning
List possible User Initiated Provisioning
CLAP
Certifications
Lifecycle Manager
Access Requests
Policy Violations
List possible System Initiated Provisioning
BAIR
Background Reconciliation
Aggregation
Identity Refresh-Driven Assignments
Role Assignments
List possible Lifecycle event initiated Provisioning
Joiner
Leaver
Manager Transfer
Reinstate
What are Lifecycle Events?
Activities that happen in the normal course of a person’s employment
* Joining the company (joiners)
* Changing departments/managers (movers)
* Leaving the company (leavers)
Describe the process of Attribute Synchroniztion
Attribute synchronization is an automated process of synchronizing changes to Identity Cube identity attributes (such as name, email, or department) from an authoritative source to target systems.
Yes or No
Attribute Synchronization is Triggered by Aggregation
YES
Yes or No
Attribute Synchronization is Triggered by editing identity in UI.
Yes
Direct Edit to an Identity or Aggregation (Synchronize Attributes refresh option)
What can you create provisioning requests for in IdentityIQ?
Certifications,
Policy Violations,
Identity Refresh-Driven Assignments,
Lifecycle Manager Requests,
Lifecycle Event-Driven Provisioning
These actions represent different scenarios under which provisioning requests can be initiated.
Fill in the blank: You can create provisioning requests in IdentityIQ using _______.
CLLIP
Certifications,
Lifecycle Manager Requests,
Lifecycle Event-Driven Provisioning,
Identity Refresh-Driven Assignments,
Policy Violations
Yes or No
Identity Refresh-Driven Assignments can be used to create provisioning requests in IdentityIQ.
Yes
Yes or No
Identity Refresh-Driven Assignments can be used to create provisioning requests in IdentityIQ.
Yes
Yes or No
Manage Access can be used to create provisioning requests in IdentityIQ.
No
Yes or No
Policy Violations can be used to create provisioning requests in IdentityIQ.
Yes