Enable Automatic Account Provisioning
Required User Role: Administrator
When you manually configure or edit a SAML configuration, you can enable automatic user account provisioning. Automatic account provisioning allows users with credentials for the IdP named in the SAML configuration to create a Tenable MSSP account the first time they log in via the IdP.
Tenable MSSP creates automatically provisioned accounts with the following defaults:
-
Full name — NameID
-
Username — NameID
-
Email — NameID
-
User role — Basic
Tenable MSSP does not currently support any other claim types.
Before you Begin:
Configure your IdP to authenticate with Tenable MSSP. For more information, see the Tenable SAML Configuration Quick Reference Guide.
To enable automatic user account provisioning:
-
In the upper-left corner, click the button.
The left navigation plane appears.
-
In the left navigation plane, click Settings.
The Settings page appears.
-
Click the SAML tile.
The SAML page appears.
-
In the SAML table, click the SAML configuration for which you want to enable automatic account provisioning.
The SAML Settings page appears.
-
At the bottom of the page, click the User Autoprovisioning Enabled toggle to enable automatic account provisioning.
-
Click Save.
Tenable MSSP enables automatic account provisioning in the SAML configuration.