Symantec IGA

 View Only
Expand all | Collapse all

SCIM Connector Setup

  • 1.  SCIM Connector Setup

    Posted Apr 30, 2020 10:28 AM
    Hi Community,

    I'm trying to set up Atlassian as a manged endpoint in Identity Manager using its REST API. To authenticate I use a bearer token and it works perfectly if I execute the calls from Postman.

    When trying to set up the connector using the SCIM endpoint type, there is no option to authenticate with just a bearer token. This is also the same when trying through Connector Xpress.

    Does Identity Manager not support the use of a bearer token? Is there a workaround for this?

    Kind Regards,
    Anwar

    ------------------------------
    Associate Services Consultant
    Securience
    ------------------------------


  • 2.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Apr 30, 2020 10:54 AM
    The SCIM Connector supports these two bearer token scenarios as documented in the link below. If you require other use case(s) please submit an enhancement request on the Ideation page.

    • Oauth 2.0 Bearer Token with resource owner password grant type
    • Oauth 2.0 Bearer Token with client credentials grant type


    https://techdocs.broadcom.com/content/broadcom/techdocs/us/en/ca-enterprise-software/layer7-identity-and-access-management/identity-management-and-governance-connectors/1-0/connectors/other-connectors/scim-connector/secure-communication-to-scim.html

    ------------------------------
    Perhaps there are others in the communities who have experience in doing this and we invite them to comment here also.

    Another option may be to reach out to our partner HCL Technologies to see in what way they can assist further. The Enterprise Studio team of HCL can be reached at enterprisestudio@hcl.com. https://www.hcltech.com/enterprise-studio
    ------------------------------



  • 3.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted May 01, 2020 07:08 AM
    Hi Anwar,
                   Currently, SCIM connector doesn't support Bearer Token. Alternatively, you can choose to go with REST connector type if you are on Identity Manager v14.3. It's the new connector that we have built as part of IM v14.3 and augmenting further to support any REST API based endpoints. You need to build the metadata configuration of REST connector type using ConnectorXpress for your Atlassian endpoint and deploy that onto Connector Server to start managing the endpoint from IM. Currently documentation is not available for REST connector type and the same would be available as part of our upcoming release.

    ------------------------------
    Vijay Mamidi,
    Identity Suite,
    Broadcom.
    ------------------------------



  • 4.  RE: SCIM Connector Setup

    Posted May 01, 2020 07:32 AM
    Hi Vijay,

    Thanks, but how would I build the metadata configuration of the REST connector type? If I go to Connector Xpress, I can't see REST as a type on the Provisioning Server or Connector Server. I also can't see a reference when trying to use the "Create New from Template" option.

    Could you please point me to where I can do this?

    Kind Regards,
    Anwar

    ------------------------------
    Associate Services Consultant
    Securience
    ------------------------------



  • 5.  RE: SCIM Connector Setup
    Best Answer

    Broadcom Employee
    Posted May 07, 2020 01:37 AM
    Hi Anwar,
                    We are in the midst of enabling user interface for this feature. Thought of sharing manual procedure to get this done in your case but realized that it would require lot of efforts and communication to so. So, better option would be to wait until formal release of this new feature as part of our upcoming release version.

    ------------------------------
    Vijay Mamidi,
    Identity Suite,
    Broadcom.
    ------------------------------



  • 6.  RE: SCIM Connector Setup

    Posted Feb 12, 2021 03:06 AM
    Hi, where I can find documentation about this REST connector? We are on Identity Manager 14.3 and we want integrate a REST endpoint...

    Thanks


  • 7.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Feb 12, 2021 04:03 AM
    Hi Daniele,
                     It's available on the validation site. Please let us know further if there are any questions on the steps illustrated in the documentation. 



    Regards,

    Vijay Mamidi

    Identity Governance & Administration  | Symantec Enterprise Division

    Broadcom



    This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.





  • 8.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Feb 12, 2021 06:13 AM
    Hi Vijay
    Can you identify the actual name / description of this feature in the validate site?
    Thank you
    Rinat


  • 9.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Feb 12, 2021 10:34 AM
    Hi Rinat,
                 It's Symantec IGA Conn XP 2.0.

    image.png


    Regards,

    Vijay Mamidi

    Identity Governance & Administration  | Symantec Enterprise Division

    Broadcom

    mobile: +91 900 092 1776


    This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.





  • 10.  RE: SCIM Connector Setup

    Posted Feb 12, 2021 11:10 AM
    Hi Vijay,

    is possible access to this feature? And it's supported for production environment (CA Identity Suite 14.3 CP2) ?

    Thanks


  • 11.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Feb 12, 2021 11:32 AM
    Hi Daniele,
                     This validation release is only for non-production environments. Access issue would be addressed by Tuesday. 


    Regards,

    Vijay Mamidi

    Identity Governance & Administration  | Symantec Enterprise Division

    Broadcom



    This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.





  • 12.  RE: SCIM Connector Setup

    Posted Feb 12, 2021 12:03 PM
    Hi Vijay,

    first all thanks for your quick reply.
    Do you know when this release will be available for production env? 
    With CA Identity Suite 14.3 CP2 what is the best solution to integrate a generic REST Endpoint?

    Thanks


  • 13.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Feb 14, 2021 11:52 PM
    Hi Daniele,
                    Production release date is not yet confirmed. The integration solution with CA Identity Suite 14.3 CP2 is clearly illustrated with steps on the validation site. As mentioned earlier, access issue to this product on the validation site would be addressed by tomorrow.


    Regards,

    Vijay Mamidi

    Identity Governance & Administration  | Symantec Enterprise Division

    Broadcom



    This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.





  • 14.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Feb 17, 2021 01:33 AM
    Hi Daniele,
                    Permissions are enabled. Please try and let us know if you still encounter access issue. 


    Regards,

    Vijay Mamidi

    Identity Governance & Administration  | Symantec Enterprise Division

    Broadcom



    This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.





  • 15.  RE: SCIM Connector Setup

    Posted Feb 18, 2021 02:21 AM
    Hi Vijay,

    with my account I don't have this section:

    image.png
    in validation site.

    Thanks


  • 16.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Feb 25, 2021 05:33 AM
    Hi Vijay
    Can we confirm whether this should be available to all users?
    Thank you
    Rinat


  • 17.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Feb 25, 2021 11:58 PM
    Hi Rinat,
                 Yes, it's available for all now. 


    Regards,

    Vijay Mamidi

    Identity Governance & Administration  | Symantec Enterprise Division

    Broadcom



    This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.





  • 18.  RE: SCIM Connector Setup

    Posted Feb 26, 2021 03:01 AM
    It's available on 14.4 ?


  • 19.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Feb 26, 2021 08:47 AM
    afaik, it's not part of 14.4 but available only on validate.broadcom.com, Symantec IGA - Customers validation program. Below what i can see with my user:




    ------------------------------
    Advisor
    Symantec Enterprise Division, Broadcom
    ------------------------------



  • 20.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Mar 01, 2021 09:49 AM
    Hi Daniele,
                    No. It would be part of the 14.4 CP1 release. 


    Regards,

    Vijay Mamidi

    Identity Governance & Administration  | Symantec Enterprise Division

    Broadcom



    This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.





  • 21.  RE: SCIM Connector Setup

    Posted Aug 17, 2021 04:58 AM
    Hello

    The connector is not available for us in the validation site. How can i gain access to the connector ?
    Also, when is the CP1 patch scheduled to be released?

    Thank you
    Gerasimos


  • 22.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Aug 17, 2021 07:09 AM
    Hi Gerasimos,
                          14.4 CP1 (14.4.1) release is scheduled for mid October 2021. Installer based version would be available for RestXpress connector software as part of 14.4.1. 


    Regards,

    Vijay Mamidi

    Identity Governance & Administration  | Symantec Enterprise Division

    Broadcom



    This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.





  • 23.  RE: SCIM Connector Setup

    Posted Nov 01, 2021 08:44 AM
    Hello Vijay

    Is the Patch released yet ?

    Regards 
    Gerasimos


  • 24.  RE: SCIM Connector Setup

    Broadcom Employee
    Posted Nov 01, 2021 10:02 AM
    Hi Gerasimos,
                  It's delayed by a month and will be released by mid November, 2021. 


    Regards,

    Vijay Mamidi

    Identity Governance & Administration  | Symantec Enterprise Division

    Broadcom



    This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.