To disable Active Roles users for two-factor authentication, remove the users from the ARS 2FA Users group. Removing the users from the ARS 2FA Users group disables the minimal permissions on the users applied through the Starling - Two Factor Authentication User Access template that authorize the users for two-factor authentication.
In case of Starling outage, the Administrator has the privilege to disable Starling users from 2FA in the Web interface by clicking on the Disable Starling 2FA button in Starling 2FA tab in Starling page of Configuration Center.
To re-enable the Starling users to use 2FA again, administrators can click on the Enable Starling 2FA button in Starling 2FA tab in Starling page of Configuration Center.
Active Roles provides support to connect to Starling Connect to manage the user provisioning and deprovisioning activities for the registered connectors. Using the Starling Join feature in Active Roles, you can connect to One Identity Starling.
On joining to Starling, the registered connectors for the user are displayed if the Starling Connect subscription exists. If the subscription does not exist, visit the Starling site for Starling Connect subscription. The displayed connectors are available for provisioning or deprovisioning of users or groups through Active Roles.
The Active Roles Configuration Center enables you to view the Starling Connect settings in order to manage the registered connected systems.
|
NOTE: Before you view the Starling Connect settings, Active Roles must be joined to One Identity Starling. |
To view the Starling settings
|
NOTE: For more information on extending the Active Roles provisioning and account administration capabilities to your cloud applications, click Learn More in the Starling tab. |
To view the Starling Connectors settings
The options specific to the page are displayed. The available options are Connection Settings, Visit Starling Connect Online, Refresh Connectors.
The Connection Settings wizard displays the current Starling connect settings, such as the Subscription ID, SCIM Client ID, Client secret, and token end point URL. The settings are not editable and the values are populated when you join Starling.
The Starling Connect portal displays the registered connectors and enables you to add or remove connectors.
|
NOTE: In case the connectors are not displayed on the Active Roles Starling Connect page, you can view the registered connectors on the Starling Connect portal. |
|
NOTE:Refresh Connectors refreshes the Starling Connect policy to reflect the latest connector list. |
© 2021 One Identity LLC. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy