Client Management Suite

Expand all | Collapse all

Using Identity management to Create Altiris users using API or directly at database

  • 1.  Using Identity management to Create Altiris users using API or directly at database

    Posted 08-30-2021 11:30 AM
    Hello,
    We currently work with an identity management tool (IAM - Sailpoint) and we were wondering if it would be possible to use any API to connect to Altiris that we could use to create users and add them into the different groups?
    If not, could you please advise us about what Stored procedure at database level we could use to create users and also how to add those users in the corresponding groups? 
    At the end the goal is to manage and automatize the Altiris identities through our IAM tool instead to create the users and groups only from Altiris.
    Thanks a lot to everyone for your help.

    (Altiris 8.5 RU5)


  • 2.  RE: Using Identity management to Create Altiris users using API or directly at database

    Posted 08-31-2021 04:16 AM

    Hi,

     

    You can use the import trustee resources in the active directory import section. This will create the accounts and roles needed.

     

    If you need to add the account to additional roles you can use the ASDK: https://localhost/Altiris/ASDK.NS/SecurityManagementService.asmx -> AddRoleMembers

     

    cidimage001.png@01D79E51.05974BE0

     

     

     


    Rufus Swart
    Cyber SecOps Automation Principle

    +27 12 003 6596
    +27 82 532 3250
    rufuss@dotcomsecurity.co.za


    byls bridge office park centurion gauteng 0157
    www.dotcomsoftware.co.za

       

     

    EMAIL DISCLAIMER – This message contains privileged and confidential information intended only for the person or entity to which it is addressed. Any review, retransmission, dissemination, copy or other use of, or taking of any action in reliance upon this information by persons or entities other than the intended recipient, is prohibited. If you received this message in error, please notify the sender immediately by e-mail, facsimile or telephone and thereafter delete the material from any computer. Any views expressed in this message are those of the individual sender, except where the sender specifically states them to be the view of the entity.