IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only

IBM Verify Identity Access - Create a separate SCIM for each Reverse Proxy

  • 1.  IBM Verify Identity Access - Create a separate SCIM for each Reverse Proxy

    Posted yesterday

    Hi,

    We have deployed IVIA 11 using OpenShift cluster, and connected to external IBM Verify Directory,  we have created two suffixes in LDAP to store two types of users (ex: partners, employees). We have also created separate domain for partners, so default domain points to employees and partner domain for partners users.

    And reverse proxy-1 is configured for employees (default domain and store users in LDAP suffix: cn=employees, dc=company, dc=uk ) and reverse proxy-2 is configured for partners (partners domain and users will be stored in same LDAP but different suffix: cn=partners, dc=company, dc=uk).

    Now we have configured SCIM which points to LDAP suffix cn=partners, dc=company, dc=uk, we are able to create users and SCIM works as expected. But we have a requirement to create a SCIM for partners as well. Based on LMI admin ui, I can't add another User Profile in SCIM Configuration page to point to partners LDAP suffix. 

    My Question is, is it technically possible to create a separate SCIM for partners and employees in our situation?

    Regards
    SK



    ------------------------------
    Someswara Reddy Karem
    ------------------------------