Cloud Service Implementation User

Set up an internal (non-human) user account to be used by cloud service implementation tools and processes, including configuration migration between environments.

First, create a new Group that will be used internally. The name should clearly reflect the group’s purpose, so no human application users are assigned to it. For example, name it PROCESS-AUTOMATION

Assign this newly created Group to the AppUser and AppWebServices Application Roles in all applications corresponding to your provisioned environments.

Next, create a new process automation user

  • Specify your (administrator) email so you can activate the account and further configure process automation flows.
  • Assign the user to the Group created above.

Lastly, configure the Just In Time provision in every provisioned environment

  • Login to the environment with your administrator account.
  • Navigate to the Master Configuration portal and locate the Identity and Access Management Integration Configuration.
  • Create a new User Provisioning Rule, mapping the Group created above to K1PAUSER template User.

After configuring the Just in Time Provision, logout and log in again, this time using the process automation user’s credentials. Upon successful login, the corresponding user will be created in the environment.