Hello there!

Need Help? We are right here!

Support Icon
miniOrange Email Support
success

Thanks for your Enquiry. Our team will soon reach out to you.

If you don't hear from us within 24 hours, please feel free to send a follow-up email to info@xecurify.com

Search Results:

×

Active Directory Provisioning


Active Directory Provisioning automates the process of creating, updating, and removing user accounts in third-party applications using API endpoints. miniOrange's automated User Provisioning feature seamlessly integrates with Active Directory to provision all user identities automatically, saving time and managing access privileges throughout the user lifecycle.

Bi-directional and automatic user provisioning and de-provisioning actions enhance security by removing access to sensitive applications and content when an employee leaves or changes roles. This improves your organization's security profile.

Automatic Provisioning saves time when setting up new users and teams, and also manages access privileges through the user lifecycle. It is considered as a part of user lifecycle management. miniOrange can create, read, and update user accounts for new or existing users, remove accounts for deactivated users, and synchronize attributes across multiple user stores and the applications that the user needs access to.

Active Directory Deprovisioning means deleting a user and removing their access from multiple applications and network systems at once. Automatic Deprovisioning action is triggered when an employee leaves a company or changes roles within the organization. The deprovisioning features increase your organization's security profile by removing access to sensitive applications and content from people who leave your organization.



Automate Provisioning & Automatic Deprovisioning Scenarios


miniOrange provides solutions for all scenarios of provisioning, which includes AD Integration, LDAP Integration and automated provisioning for all External Applications such as Office 365, Google Workspace, Workday, etc



Following is the Step-by-Step Guide given below to setup Provisioning in Azure Active Directory (Active Directory)

1. Setup Automatic Provisioning in Azure Active Directory (Active Directory)

  • Login into miniOrange Admin Console.
  • Go to the External directories, Click on Add Directory.
  • click Add Directory for Active Directory automatic provisioning

  • Configure ldap as a User Store to set up user provisioning with AD/LDAP. You can choose any of the user store mentioned there.
    • Store LDAP Configuration in miniOrange: Keep configuration in miniOrange. Make sure to open the firewall to allow incoming requests to your LDAP.
    • Store LDAP Configuration On-Premise: Keep configuration in your premise and only allow access to LDAP inside premises. You will have to download and install miniOrange gateway in your premise.
    Configure LDAP for Active Directory automatic provisioning

  • In the Provisioning section and select Active Directory from the dropdown.
  • Enter the Admin Username and click on Verify Credentials.
  • Active Directory user Provisioning Setup

  • In User Provisioning/Deprovisioning tab enable the provisioning features such as Import User, Create User, Edit User, Delete User and Password Sync which you want for users.
  • Active Directory user Provisioning Configure Users

  • In Group Provisioning/Deprovisioning tab enable the group provisioning features such as Import Group, Create Group, Delete Group and Add/Remove Group membership of User.
  • Active Directory user Provisioning: Google Workspace Provisioning Configure

  • Click Save.

2. Import Users

  • To import the users from Azure Active Directory (Active Directory), go to the Import Users tab.
  • Select the Active Directory from the drop-down menu and click on import.
  • Active Directory automatic Provisioning: Import user from AD for provisioning

  • Now go to the Users >> User List and you will find the all the users imported from Active Directory.

3. Import Groups

  • To import groups from Azure Active Directory (Active Directory), go to the Import Groups tab.
  • Select the Active Directory from the drop-down menu and click on Import.
  • Active Directory automatic Provisioning: Import groups from AD for provisioning

4. Create Users

  • To create a user in miniOrange, Go to Users >> User List >> click on the Add User button.
  • Fill out user basic information and click on Create User button.
  • Active Directory automatic Provisioning Add User

  • After creating user in miniOrange it will automatically create the same user in Active Directory.
  • View user details after AD automatic Provisioning

5. Edit Users

  • To update user profile, Go to Users >> User List.
  • Select a particular user and in Actions dropdown select Edit.
  • Active Directory user Provisioning Select Edit User

  • Fill out user updated information and click on Save button.
  • Active Directory user Provisioning Edit User

6. Delete Users

  • To delete user, Go to Users >> User List.
  • Select a particular user and in Actions dropdown select Delete.
  • Provisioning in Active Directory  Select Delete User

  • A pop up will appear in which click on Yes button.
  • Provisioning in Active Directory Delete User

7. Password Sync

  • To send password sync emails to the users with link to reset their Azure Active Directory account password, Go to Users >> User List and click on Onboarding Status tab.
  • Select users and in Select Action dropdown select Send Activation Mail with Password Reset Link.
  • Click on Apply.
  • Provisioning in Active Directory Password Sync

  • Click on the activation link and it will direct to reset password.
  • Once, the new password is set it will be synced.


View Provisioning Reports

How to access Provisioning Reports?

  • Navigate to the Reports in the left-hand navigation pane and select Provisioning Report.
  • Provisioning Report

  • Filter the reports by specifying Enduser Identifier and Application Name criteria. Additionally, choose the desired timespan for the reports. Once done, click on the Search.
  • Search Provisioning Report

  • Alternatively, you can directly click on Search to retrieve all provisioning reports based on time without applying any specific filters.


External References

Want To Schedule A Demo?

Request a Demo
  



Our Other Identity & Access Management Products