MSAMM
Back to course

Administering Cloud EPM: The Platform Beneath the Business Processes · Module 7 · Provisioning at Scale

Synchronizing from an external directory

Lesson 82 of 201 · 15 min

The prerequisites and who does what — this is joint work with the identity team. Configure the connection from the external directory, map attributes, configure group synchronization, run the initial synchronization, verify users and groups, test a joiner AND a leaver, end to end, and show the synchronization schedule and monitoring. THIS IS A JOINT PROJECT, NOT A TASK. The identity team owns the source, you own the target, the mapping is agreed between you. Scope it as a work package with a named owner on each side. ATTRIBUTE MAPPING DESERVES CARE. Username format in particular — it determines what your users type to sign in, and it must match whatever Module 8's SSO configuration expects. TEST THE LEAVER PATH. TWICE. It is the one that matters and the one nobody checks. Monitor the synchronization. A silently failed sync means your user list is quietly wrong — Module 14.

The full lesson is part of the course

The video, the complete written lesson and the module quiz are included in Administering Cloud EPM: The Platform Beneath the Business Processes, with a certificate on completion and a fourteen-day refund window.

Get the free lessons by email

We will email you a link to every free lesson in this course. No account needed, and one message only.

In this module: Module 7 · Provisioning at Scale

  1. 1Why manual provisioning fails
  2. 2What synchronization does and does not carry
  3. 3Synchronizing across identity domains
  4. 4Synchronizing specific users and groups
  5. 5Synchronizing from an external directory
  6. 6Groups for application-level role assignment
  7. 7Password policies
  8. 8Email notifications and password resets
  9. 9What breaks
  10. 10Lab: design the synchronization and test the leaver