Configuring AWS IAM connector to support entitlements for User and Group
This section gives the details of the configuration changes to be made to the Amazon (S3 and AWS) connector to support entitlements for User and Group. The Designer tool and the Synchronization Editor tool are used to configure the AWS IAM connector to support entitlements for User and Group.
For more information, see:
To configure the AWS IAM connector to support entitlements for User, use the Synchronization Editor.
For more information, see:
To view the default custom process for User:
-
Open the Designer tool.
-
In the Navigation pane, select Process Orchestration| Process| UCIUserHasItem| UCI_UCIUserHasItem_Update.
- In the Tasks pane, under the Edit Process option, click Edit process| UCI_UCIUserHasItem_Update.
The Process properties window is displayed.
The Synchronization Editor tool is used to configure the AWS IAM connector to support entitlements for User.
To configure AWS IAM connector to support entitlements for User:
-
Open the Synchronization Editor.
-
Open the specific synchronization project.
-
Navigate to the Mappings tab and select User.
-
Remove vrtEntitlements from the One Identity Manager side in the Mapping window.
-
In the Property mapping rules section, add the new mapping rule Value Comparison Rule, with the value vrtProfiles <--> Entitlements~value.
-
Run the synchronization.
The users and entitlements that exist on the target system instance are synchronized with One Identity Manager.