SAP-IAM
Integrate with SAP's services to execute CRUD operations for employee lifecycle processes.
Identity and Access Management · SAP-IAM
Details
| ID | SAP-IAM |
|---|---|
| Provider | SAP |
| Category | Identity and Access Management |
| From Version | 6.0.0 |
| Docker Image | demisto/python3:3.12.13.10116658 |
| Supported Modules | Agentix XSIAM EDR Cortex Cloud Cloud Runtime Security |
README
Integrate with SAP’s services to execute get and disable operations for employee lifecycle processes.
Configure SAP - IAM in Cortex
| Parameter | Description | Required |
|---|---|---|
| Base URL | True | |
| Deactive User URL | False | |
| Username | True | |
| Password | True | |
| Allow disabling users | Determines whether users can be disabled using the SAP IAM integration | False |
| Incoming Mapper | True | |
| Outgoing Mapper | Cortex XSOAR only parameter. | False |
| Trust any certificate (not secure) | Trust any certificate (not secure). | False |
| Use system proxy settings | Use system proxy settings. | False |
Commands
You can execute these commands from the CLI, as part of an automation, or in a playbook.
After you successfully execute a command, a DBot message appears in the War Room with the command details.
iam-get-user
Retrieves a single user resource.
Base Command
iam-get-user
Input
| Argument Name | Description | Required |
|---|---|---|
| user-profile | A User Profile indicator. | Required |
Context Output
| Path | Type | Description |
|---|---|---|
| IAM.Vendor.active | Boolean | When true, indicates that the employee’s status is active in the third party integration. |
| IAM.Vendor.brand | String | Name of the integration. |
| IAM.Vendor.details | String | Provides the raw data from the third party integration. |
| IAM.Vendor.email | String | The employee’s email address. |
| IAM.Vendor.errorCode | Number | HTTP error response code. |
| IAM.Vendor.errorMessage | String | Reason why the API failed. |
| IAM.Vendor.id | String | The employee’s user ID in the app. |
| IAM.Vendor.instanceName | String | Name of the integration instance. |
| IAM.Vendor.success | Boolean | When true, indicates that the command was executed successfully. |
| IAM.Vendor.username | String | The employee’s username in the app. |
Command Example
!iam-get-user user-profile={"username": "john.doe@example.com"}
Human Readable Output
iam-disable-user
Disable an active user.
Base Command
iam-disable-user
Input
| Argument Name | Description | Required |
|---|---|---|
| user-profile | A User Profile indicator. | Required |
Context Output
| Path | Type | Description |
|---|---|---|
| IAM.Vendor.active | Boolean | When true, indicates that the employee’s status is active in the third party integration. |
| IAM.Vendor.brand | String | Name of the integration. |
| IAM.Vendor.details | string | Provides the raw data from the third party integration. |
| IAM.Vendor.email | String | The employee’s email address. |
| IAM.Vendor.errorCode | Number | HTTP error response code. |
| IAM.Vendor.errorMessage | String | Reason why the API failed. |
| IAM.Vendor.id | String | The employee’s user ID in the app. |
| IAM.Vendor.instanceName | string | Name of the integration instance. |
| IAM.Vendor.success | Boolean | When true, indicates that the command was executed successfully. |
| IAM.Vendor.username | String | The employee’s username in the app. |
Command Example
!iam-disable-user user-profile={"username": "john.doe@example.com"}
Configuration parameters
url— Base URL (required)deactivate_uri— Deactive User URLcredentials— Username (required)disable_user_enabled— Allow disabling usersmapper_in— Incoming Mapper (required)mapper_out— Outgoing Mapperinsecure— Trust any certificate (not secure)proxy— Use system proxy settings
Commands (3)
-
get-mapping-fieldsRetrieves a User Profile schema, which holds all of the user fields within the application. Used for outgoing-mapping through the Get Schema option.
-
iam-disable-userDisable an active user.
-
iam-get-userRetrieves a single user resource.
category: Identity and Access Management provider: SAP commonfields: id: SAP-IAM version: -1 configuration: - display: Base URL name: url required: true type: 0 - display: Deactive User URL name: deactivate_uri type: 0 required: false - display: Username name: credentials required: true type: 9 - defaultvalue: 'true' display: Allow disabling users name: disable_user_enabled type: 8 required: false - defaultvalue: User Profile - IAM Template (Incoming) display: Incoming Mapper name: mapper_in required: true type: 0 - defaultvalue: User Profile - IAM Template (Outgoing) display: Outgoing Mapper name: mapper_out required: false type: 0 additionalinfo: Cortex XSOAR only parameter. hidden: - marketplacev2 - platform - display: Trust any certificate (not secure) name: insecure type: 8 required: false - display: Use system proxy settings name: proxy type: 8 required: false description: Integrate with SAP's services to execute CRUD operations for employee lifecycle processes. display: SAP - IAM name: SAP-IAM script: commands: - arguments: - description: A User Profile indicator. name: user-profile required: true description: Retrieves a single user resource. name: iam-get-user outputs: - contextPath: IAM.Vendor.active description: When true, indicates that the employee's status is active in the 3rd-party integration. type: Boolean - contextPath: IAM.Vendor.brand description: Name of the integration. type: String - contextPath: IAM.Vendor.details description: Provides the raw data from the 3rd-party integration. type: String - contextPath: IAM.Vendor.email description: The employee's email address. type: String - contextPath: IAM.Vendor.errorCode description: HTTP error response code. type: Number - contextPath: IAM.Vendor.errorMessage description: Reason why the API failed. type: String - contextPath: IAM.Vendor.id description: The employee's user ID in the app. type: String - contextPath: IAM.Vendor.instanceName description: Name of the integration instance. type: String - contextPath: IAM.Vendor.success description: When true, indicates that the command was executed successfully. type: Boolean - contextPath: IAM.Vendor.username description: The employee's username in the app. type: String - arguments: - description: A User Profile indicator. name: user-profile required: true description: Disable an active user. execution: true name: iam-disable-user outputs: - contextPath: IAM.Vendor.active description: When true, indicates that the employee's status is active in the third party integration. type: Boolean - contextPath: IAM.Vendor.brand description: Name of the integration. type: String - contextPath: IAM.Vendor.details description: Provides the raw data from the third party integration. type: String - contextPath: IAM.Vendor.email description: The employee's email address. type: String - contextPath: IAM.Vendor.errorCode description: HTTP error response code. type: Number - contextPath: IAM.Vendor.errorMessage description: Reason why the API failed. type: String - contextPath: IAM.Vendor.id description: The employee's user ID in the app. type: String - contextPath: IAM.Vendor.instanceName description: Name of the integration instance. type: String - contextPath: IAM.Vendor.success description: When true, indicates that the command was executed successfully. type: Boolean - contextPath: IAM.Vendor.username description: The employee's username in the app. type: String compliantpolicies: - User Hard Remediation - description: Retrieves a User Profile schema, which holds all of the user fields within the application. Used for outgoing-mapping through the Get Schema option. name: get-mapping-fields dockerimage: demisto/python3:3.12.13.10116658 runonce: false script: '-' subtype: python3 type: python ismappable: true isremotesyncout: true tests: - No tests fromversion: 6.0.0