Configure a provisioning policy
Quick answer
Step-by-step: build a provisioning policy so accounts are created with the right attributes in SailPoint IdentityIQ.
Key takeaways
- Add a create policy (and update policy) on the application
- List every required target attribute
- Source each field from attribute, rule or prompt
- Test account creation before go-live
1. Open the application policy
On the application, add a provisioning policy for account creation (and a separate one for updates if needed).
2. Add fields
Add each attribute the target requires, for example samAccountName, email, OU, and mark which are required.
3. Source the values
For each field choose a source: an identity attribute, a field value rule, or a prompt to the requester.
4. Test provisioning
Run a test account creation and confirm every required field is populated correctly before enabling for users.
Want to learn this properly?
Our live, instructor-led SailPoint Training covers this hands-on, with real projects and a certification path.
Check your understanding
What is the goal of a provisioning policy?
- A. Approve access
- B. Create accounts with all required attributes
- C. Aggregate data
- D. Run reports
Show answer
B. Create accounts with all required attributes
A provisioning policy ensures accounts are created complete with the attributes the target needs.