What is SailPoint IdentityNow? #
SailPoint IdentityNow is a SaaS-based IAM (identity and access management) solution that allows you to easily control user access to all systems and applications, enhance audit response and increase your operational efficiency. IdentityNow provides provisioning, single sign-on, password management, and access certification services for mobile, cloud, and on-premises applications.
Why Should You Use the SailPoint IdentityNow Connector? #
The SailPoint IdentityNow connector provides visibility into the users in your environment. You can use this visibility to:
-
ensure users are managed per your security policies
-
derive relationships between assets, users, applications, and data
How Does This Connector Work? #
Lucidum executes read-only requests to the SailPoint IdentityNow REST API and ingests only meta-data about SailPoint IdentityNow devices. Lucidum does not retrieve any data stored on your assets.
Configuring the Connector in Lucidum #
Field |
Description |
Example |
---|---|---|
URL |
The URL for the SailPoint IdentityNow API. |
https://lucidum.api.identitynow.com |
Client ID |
ID for a SailPoint IdentityNow account with read access. This account must be associated with ORG_ADMIN authority. For full details refer to https://developer.sailpoint.com/idn/api/authentication#generate-a-personal-access-token |
ef38f94347e94562b5bb8424a56397d8. |
Client Secret |
The password for the SailPoint IdentityNow account. For details, refer to For full details refer to https://developer.sailpoint.com/idn/api/authentication#generate-a-personal-access-token |
************ |
Source Documentation #
Creating Credentials #
For details on creating credentials to use with Lucidum, see https://developer.sailpoint.com/idn/api/authentication#generate-a-personal-access-token
Contact your Lucidum Sales Representative for help with creating credentials.
Required Permissions #
The account you use to generate the client ID and client secret must have:
-
User level of ORG_ADMIN. For details on adding a user level to an account, see https://documentation.sailpoint.com/saas/help/accounts/identities.html#setting-user-level-permissions
-
Scope of idn:accounts:read. By default, personal access tokens are asisgned the scope “sp:scopes:all”. For user level ORG_ADMIN, this scope already includes idn:accounts:read.
Contact your Lucidum Sales Representative for help with permissions.
API Documentation #
API version V3
For details about the SailPoint IdentityNow API, see: