5.3 Configuring Field Mapping

You must configure field mapping between SAP GRC Access Control Compliant User Provisioning and the Identity Vault.

  1. Log in to the SAP GRC Access Control system as an administrative user.

  2. Click the Configuration tab, then click Field Mapping > Provisioning.

  3. Click the Create icon.

  4. Use the following information to configure the field mapping:

    Group Name: Specify a group name for this field mapping.

    Short Description: Specify a short description for the field mapping.

    Connector Type: Select IDM for the connector type.

  5. In the Application table, click the plus icon to add the connector you created in Section 5.1, Creating a Connector in the SAP GRC Access Control System, then select Default System.

  6. Click Continue.

  7. Use the following table to map the AC fields (GRC Access Control) with the application fields (Identity Vault).

    These mappings are used to map GRC Access Control fields to attributes names commonly used with SPML. The schema mapping in the driver configuration file is then used to map the SPML attribute names to the names used in the Identity Vault.

    AC Field

    Application Field

    Email Address - STANDARD

    emailAddress

    Employee Type - STANDARD

    employeeType

    Location - STANDARD

    location

    Org. Unit - STANDARD

    department

    Position - STANDARD

    Title

    Requestor ID - STANDARD

    displayName

    Telephone Number - STANDARD

    telephone

    User FName - STANDARD

    firstName

    User ID - STANDARD

    CN

    User LName - STANDARD

    lastName

  8. Click Save after you have defined the mappings.