Skip to content
IT Canvass
Development · Lesson

Provisioning policies

Quick answer

Defining provisioning policies (create/update forms) that supply the attributes needed to provision accounts in IdentityIQ.

Key takeaways

  • Define fields needed to create/update target accounts
  • Fields default from attributes, rules, or prompt the user
  • Separate create and update policies
  • Complete policies prevent failed provisioning

What they are

A provisioning policy defines the fields required to create or update an account on a target, such as the attributes AD needs for a new user.

Field sourcing

Each field can be defaulted from identity attributes, a field value rule, or prompted from the requester when data is missing.

Create vs update

Separate policies handle account creation and later updates, so the right fields are gathered at the right time.

Why they matter

Good provisioning policies mean accounts are created complete and correct the first time, avoiding failed or partial provisioning.

Want to learn this properly?

Our live, instructor-led SailPoint Training covers this hands-on, with real projects and a certification path.

Check your understanding

  1. What does a provisioning policy define?

    • A. Who approves access
    • B. The fields needed to provision an account
    • C. The audit retention
    • D. The correlation logic
    Show answer

    B. The fields needed to provision an account

    Provisioning policies define the fields required to create or update target accounts.

Frequently asked questions

What does the term Provisioning Policies refer to in SailPoint?

A provisioning policy defines the fields required to create or update an account on a target, such as the attributes AD needs for a new user.

What is the practical takeaway on Provisioning Policies?

Separate policies handle account creation and later updates, so the right fields are gathered at the right time.

What is worth remembering about Provisioning Policies in practice?

Good provisioning policies mean accounts are created complete and correct the first time, avoiding failed or partial provisioning.
CallWhatsAppEnquire