Syncing a User to Advanced Idientity

mark.thompson@oneadvanced.com Updated by mark.thompson@oneadvanced.com

 

Advanced Identity

Advanced Identity is available as a single sign-on method for Care Business Management, enhancing security and simplifying user access. It integrates with Active Directory and offers multiple Multi-Factor Authentication (MFA) options for user logins. For more information on the benefits and features of Advanced Identity, including MFA and Single Sign-On, please refer to our guide: An Introduction to Multi-Factor Authentication & Single Sign-On - OneAdvanced Platform

Syncing a User to Advanced Identity

Care Business Management is integrated with Advanced Identity, allowing for streamlined user management. While users continue to be managed within Care Business Management, additional login options and controls are accessible through the Advanced Identity interface. This includes:

  • Controlling the MFA method for users
  • Unlocking users
  • Resetting a user's MFA access
  • Configuring Active Directory options

Initial Bulk Synchronization Process

For environments that did not initially have Advanced Identity available, an initial bulk synchronization process can be initiated by contacting our support team. This process synchronizes user data and identifies any issues that need to be resolved before moving to ongoing synchronization.

Ongoing Synchronization

As changes are made to system users in Care Business Management (e.g., adding new users or updating existing ones), these updates are synchronized with Advanced Identity upon saving the record. Successful synchronization updates the user's 'Authentication Provider' and populates the 'Advanced Id' with the corresponding Advanced Identity ID.

Validations

Both initial bulk and ongoing synchronization processes involve validations to ensure data integrity. If a synchronization attempt fails, it is due to not passing one of these validations:

Username Validation

Validation

Rule

Required

Yes, required for user creation

Format

Cannot contain: space, backtick (`), tilde (~), !, #, $, %, ^, &, *, parentheses (), brackets [], braces {}, pipe |, semicolon ;, colon :, quotes "`, angle brackets <>, slash /, question mark ?

Uniqueness

Must be unique within the organization (case-insensitive)

 

Email Validation

Validation

Rule

Required

Yes

Format

Must be in valid email format

Uniqueness

Must be unique within the organization (case-insensitive)

 

Error Scenarios

Scenario

Result

Duplicate username

409 Conflict – "User exists with the same username"

Duplicate email

409 Conflict – "User exists with the same email"

Invalid email format

400 Bad Request – Schema validation error

Invalid username format

400 Bad Request – Schema validation error

  

 

Was this article useful?

Access to Authorise Forms

Contact