Project template for SCIM
Use the SCIM synchronization project template for synchronizing any System for Cross-domain Identity Management. The project template uses mappings for the following schema types.
Table 36: Mapping SCIM schema types to tables in the One Identity Manager schema
Group |
UCIGroup |
User |
UCIUser |
Project template for One Identity Starling Connect
Use the One Identity Starling Connect synchronization project template for synchronizing SCIM using One Identity Starling Connect. The project template uses mappings for the following schema types.
Table 37: Mapping One Identity Starling Connect schema types to tables in the One Identity Manager schema
Group |
UCIGroup |
User |
UCIUser |
Permissionset |
UCIItem |
Role |
UCIGroup1 |
Profiles |
UCIGroup2 |
Entitlement |
UCIGroup3 |
Cloud system object processing methods
The following table describes permitted processing methods for SCIM schema types and the necessary restrictions for processing the system objects. By default, One Identity Manager allows all processing methods. Whether these processing methods can be used in the connected cloud application depends on the its implementation.
Table 38: Methods available for processing SCIM schema types
User account (User) |
Yes |
Yes |
Yes |
Yes |
Permissions control (UCIItem) |
Yes |
Yes |
Yes |
Yes |
Group (Group) |
Yes |
Yes |
Yes |
Yes |
System entitlement 1 (UCIGroup1) |
Yes |
Yes |
Yes |
Yes |
System entitlement 2 (UCIGroup2) |
Yes |
Yes |
Yes |
Yes |
System entitlement 3 (UCIGroup3) |
Yes |
Yes |
Yes |
Yes |
Configuration parameters for managing cloud applications
The following configuration parameters are required.
Table 39: Additional configuration parameters
QBM | PendingChange |
General configuration parameter for configuring pending changes. |
QBM | PendingChange | LifeTimeError |
This configuration parameter specifies the maximum retention period (in days) for failed provisioning processes. The default is 30 days. |
QBM | PendingChange | LifeTimeRunning |
This configuration parameter specifies the maximum retention period (in days) for open provisioning processes. The default is 60 days. |
QBM | PendingChange | LifeTimeSuccess |
This configuration parameter specifies the maximum retention period (in days) for successful provisioning processes. The default is 2 days. |
TargetSystem | CSM | ApplicationType |
Configuration of the different cloud applications. |
TargetSystem | CSM | ApplicationType | Salesforce |
Salesforce application settings |
TargetSystem | CSM | ApplicationType | Salesforce | DefaultProfileName |
Name of the default profile assigned to new Salesforce users. |