Will Provision, Update or Deprovision workflow steps run in either Quick Connect or the Active Roles Synchronization Service trigger related Active Roles Workflow rules, if those are configured for the target container?
Also, can Active Roles Workflows be triggered when creating, updating or deprovisioning users with Active Roles Management Shell?
In most cases, Workflows will trigger and function as expected. Script Activity rules and If-Else Activity rules can be triggered from Quick Connect or PowerShell scripts, as long as they include a Notification Activity rule. The Notification Activity may be just an empty placeholder rule, it may not send any notifications.
The below PowerShell script sample demonstrates one method by which a Control could be leveraged. Approvals triggered by this method still respect the standard Approval rules - if this code is executed under the security context of an Active Roles Administrator, then Approvals will be bypassed, unless the Approval Workflow has the Force Approval option enabled.
If an Active Roles Approval Workflow is configured for a target container where Quick Connect / Active Roles Synchronization Service attempts to create, modify or delete users, you might observe the following behaviour:
© 2024 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center