Provisioning policies
Quick answer
Defining provisioning policies (create/update forms) that supply the attributes needed to provision accounts in IdentityIQ.
Key takeaways
- Define fields needed to create/update target accounts
- Fields default from attributes, rules, or prompt the user
- Separate create and update policies
- Complete policies prevent failed provisioning
What they are
A provisioning policy defines the fields required to create or update an account on a target, such as the attributes AD needs for a new user.
Field sourcing
Each field can be defaulted from identity attributes, a field value rule, or prompted from the requester when data is missing.
Create vs update
Separate policies handle account creation and later updates, so the right fields are gathered at the right time.
Why they matter
Good provisioning policies mean accounts are created complete and correct the first time, avoiding failed or partial provisioning.
Want to learn this properly?
Our live, instructor-led SailPoint Training covers this hands-on, with real projects and a certification path.
Check your understanding
What does a provisioning policy define?
- A. Who approves access
- B. The fields needed to provision an account
- C. The audit retention
- D. The correlation logic
Show answer
B. The fields needed to provision an account
Provisioning policies define the fields required to create or update target accounts.