Identity mapping
    • PDF

    Identity mapping

    • PDF

    Article Summary

    User account or service identity mapping is required for some applications where a Britive identity needs to be mapped to a target application identity to check out a profile. Usually, after an application is onboarded and scanned, all users are mapped from the onboarded application. These mapped users are ready to check out the profiles. With dynamic identity mapping, the user no longer needs to scan the applications to map new user accounts or service identities to the profiles. When checking out a profile, the Britive user is dynamically matched with the application's user account. This applies to all applications that require user/service identity mapping.

    Depending on the onboarded application, you can either map the user account or service identity:

    User Account Mapping

    All applications except AWS and OCI applications are required to map user accounts. 

    To map a user account:

    1. Login to Britive with administrator privileges.
    2. Click on Admin -> Application and Access Profile Management.
    3. Click on the application and select Data from the navigation menu.
    4. Click on the Accounts tab, the list displays all the users.
    5. Click on the Map/Unmap button from the Actions column of any user to add/remove the mapping.
    6. Select the identity(users) and click the icon from the Actions column to map the identity. You can map multiple users from the same page.
    7. Click OK.

    Service Identity Mapping

    Britive service identities can be mapped with Service Accounts in GCP and Service Principals in the Azure application.

    Only one service identity can be mapped to one service account/principal.

    To map a service identity:

    1. Login to Britive with administrator privileges.
    2. Click on Admin -> Application and Access Profile Management.
    3. Click on the application and select Data from the navigation menu.
    4. Click on the Accounts tab, the list displays service accounts for this application.
    5. Click on the Map/Unmap button from the Actions column of a service account to map/unmap the service identity.
    6. Select the service identity and click + from the Actions menu to map the identity.
    7. Click OK.

    Was this article helpful?