Azure AD Role Assignment

Hi All,

When I assign an Administrator role to an Azure AD user, the user's Assignment Type is automatically set to Permanent in the Azure Portal. Is there a way to have 1IM set the Assignment Type to Eligible instead?

Thanks.

Parents
  • Hey Valiant,

    I have replied to your service request as well:

    It doesn't look like this can be configured on the 1IM side of things, out of box.

    As the documentation states, "Administrator roles are loaded into One Identity Manager by synchronization. You can edit individual master data of administrator roles but cannot create new administrator roles in One Identity Manager."

    So I think any change of assignment type has to be done on the Azure side of things.

    Although, I suppose it would be possible to add a custom column that could be mapped to the applicable attribute in Azure, and do it that way.

    Trevor

Reply
  • Hey Valiant,

    I have replied to your service request as well:

    It doesn't look like this can be configured on the 1IM side of things, out of box.

    As the documentation states, "Administrator roles are loaded into One Identity Manager by synchronization. You can edit individual master data of administrator roles but cannot create new administrator roles in One Identity Manager."

    So I think any change of assignment type has to be done on the Azure side of things.

    Although, I suppose it would be possible to add a custom column that could be mapped to the applicable attribute in Azure, and do it that way.

    Trevor

Children