Configuring provisioning for Red Hat Hybrid Cloud Console

Use this task to provision users from Verify to a Red Hat® Hybrid Cloud Console application.

Before you begin

  • You must have administrative permission or be a member of the helpdesk group to complete this task.
  • Log in to the IBM® Security Verify administration console as an Administrator.
  • A Red Hat Hybrid Cloud Console user account with an Organization Administrator role on the Automation console.

About this task

Provisioning provides the following features.
Create new users
New users that are created through Verify are also created in the Red Hat Hybrid Cloud Console application.
Delete users
Delete user is not supported by Red Hat Hybrid Cloud Console application. For Red Hat Hybrid Cloud Console from Verify account deactivation or suspend is supported for user requirements.
Modify user profile
Updates made to the user's profile through Verify are pushed to the Red Hat Hybrid Cloud Console application.
User suspend and restore
Suspending a user through Verify deactivates the user and restoring the user through Verify activates the user in the Red Hat Hybrid Cloud Console application.
User synchronization and remediation
The Red Hat Hybrid Cloud Console application supports user synchronization, remediation, and group synchronization features.
User synchronization fetches all the target application users in Verify. The adoption policy that is defined on the application specifies the matching attributes for adoption of the reconciled users.
Remediation policy can be configured to remediate user accounts with attribute values that differ between: Verify and the target application. Verify Supports the following three remediation policies.
  • NONE - Do not remediate noncompliant accounts automatically.
  • ON_SV - Update Verify account attribute values with the target application values.
  • ON_TARGET - Update target application account attribute values with Verify values.
  • Group synchronization fetches all the target application groups in Verify.
Fine granularity entitlement
Fine granularity entitlement is supported for the Red Hat Hybrid Cloud Console application. Synchronization fetches all of the Red Hat Hybrid Cloud Console application groups. Users can be added to or removed from groups. For more information about these assignments on your Administration console, see Configuring target applications for provisioning for SAAS endpoints

Procedure

  1. Log in to Red Hat Customer Portal https://access.redhat.com as a user that has Organization Administrator role.
  2. Required: Must provide including the following parameters to configure provisioning in IBM Security Verify.
    • Account ID
      1. From the menu bar, select Subscriptions.
      2. Go to Manage > Activation Keys.
      3. Select Organization ID as an Account ID.
    • Offline Token
      1. From the menu bar, select Subscriptions.
      2. Go to Manage > RHSM API Tokens.
      3. Click the GENERATE TOKEN and copy the Offline Token.