<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>idea Re: Provisioning User access in Qliksense Saas in Suggest an Idea</title>
    <link>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/1903481#M8913</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/156818"&gt;@jmaynard&lt;/a&gt;&amp;nbsp;I've tried various ways to implement a UDC type experience in SaaS when using Azure AD as the IDP, with limited success. Here is a post where I've tried to do it using App Automations:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Application-Automation/Build-a-User-Directory-Connector-to-create-update-users-in-SaaS/m-p/1877987#M270" target="_blank"&gt;Solved: Re: Build a User Directory Connector to create/upd... - Qlik Community - 1877567&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'll try and pick up the above again, however,&amp;nbsp; it feels like this should be native functionality. Onboarding users is a core piece of functionality and I'd like to do exactly as you describe...&lt;/P&gt;
&lt;P&gt;1) Sync users from a directory (i.e. Azure AD) based on a LDAP query, selected group, or all users&lt;/P&gt;
&lt;P&gt;2) Assign those users a professional/analyser/analyser capacity license type&lt;/P&gt;
&lt;P&gt;3) Add those users to relevant spaces&lt;/P&gt;
&lt;P&gt;Then at that point, ask the user to login, and their first login experience will be the reports/apps/insights they need.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you compare to how it works in practice... with auto-entitlement turned on, user logs in for the first time, doesn't have access to anything, then needs to ask someone to add them to the spaces. With auto-entitlement off, its even worse......&lt;/P&gt;</description>
    <pubDate>Thu, 10 Mar 2022 10:51:28 GMT</pubDate>
    <dc:creator>Carl_Hunter</dc:creator>
    <dc:date>2022-03-10T10:51:28Z</dc:date>
    <item>
      <title>Provisioning User access in Qliksense Saas</title>
      <link>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idi-p/1902636</link>
      <description>&lt;P&gt;We recently converted over to Qliksense Saas using azure AD as our identity provider.&lt;/P&gt;
&lt;P&gt;Previsoulsy in Qlikview and Qliksense on premise, we were using LDAP for user identity authentication.&lt;/P&gt;
&lt;P&gt;Simultaneously for user access we created Windows AD groups for users that had access to Qlikview/Qliksense&lt;/P&gt;
&lt;P&gt;In qliksense you were able to create an connection to LDAP and query specific AD groups to filter down to Qlik users. From that list you could proactively provision and assign a professional or analyzer license within the Qlik console before they connected to Qlik.&lt;/P&gt;
&lt;P&gt;In Saas, there is not an option to provision users. Today we have to turn on Entitlements for dynamic assignment of professional and Analyzer users.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We would like to provision users first and prevent other users for gaining access to the Saas and taking up a license without the proper permissions and associations to the correct AD group.&lt;/P&gt;</description>
      <pubDate>Tue, 08 Mar 2022 19:26:53 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idi-p/1902636</guid>
      <dc:creator>jmaynard</dc:creator>
      <dc:date>2022-03-08T19:26:53Z</dc:date>
    </item>
    <item>
      <title>Re: Provisioning User access in Qliksense Saas</title>
      <link>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/1903481#M8913</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/156818"&gt;@jmaynard&lt;/a&gt;&amp;nbsp;I've tried various ways to implement a UDC type experience in SaaS when using Azure AD as the IDP, with limited success. Here is a post where I've tried to do it using App Automations:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.qlik.com/t5/Qlik-Application-Automation/Build-a-User-Directory-Connector-to-create-update-users-in-SaaS/m-p/1877987#M270" target="_blank"&gt;Solved: Re: Build a User Directory Connector to create/upd... - Qlik Community - 1877567&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'll try and pick up the above again, however,&amp;nbsp; it feels like this should be native functionality. Onboarding users is a core piece of functionality and I'd like to do exactly as you describe...&lt;/P&gt;
&lt;P&gt;1) Sync users from a directory (i.e. Azure AD) based on a LDAP query, selected group, or all users&lt;/P&gt;
&lt;P&gt;2) Assign those users a professional/analyser/analyser capacity license type&lt;/P&gt;
&lt;P&gt;3) Add those users to relevant spaces&lt;/P&gt;
&lt;P&gt;Then at that point, ask the user to login, and their first login experience will be the reports/apps/insights they need.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you compare to how it works in practice... with auto-entitlement turned on, user logs in for the first time, doesn't have access to anything, then needs to ask someone to add them to the spaces. With auto-entitlement off, its even worse......&lt;/P&gt;</description>
      <pubDate>Thu, 10 Mar 2022 10:51:28 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/1903481#M8913</guid>
      <dc:creator>Carl_Hunter</dc:creator>
      <dc:date>2022-03-10T10:51:28Z</dc:date>
    </item>
    <item>
      <title>Re: Provisioning User access in Qliksense Saas</title>
      <link>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/1903566#M8917</link>
      <description>&lt;P&gt;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/17411"&gt;@Carl_Hunter&lt;/a&gt;&amp;nbsp; Thanks for the confirmation. I agree this should be native functionality. We tried to do this doing a hybrid approach with qliksense on prem paired with SAAS but it wasn't possible based on what we experienced.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Mar 2022 13:26:02 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/1903566#M8917</guid>
      <dc:creator>jmaynard</dc:creator>
      <dc:date>2022-03-10T13:26:02Z</dc:date>
    </item>
    <item>
      <title>Re: Provisioning User access in Qliksense Saas</title>
      <link>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/2068599#M12780</link>
      <description>&lt;P&gt;hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/156818"&gt;@jmaynard&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;Not sure if you've seen this yet?&amp;nbsp;&lt;A href="https://help.qlik.com/en-US/cloud-services/Subsystems/Hub/Content/Sense_Hub/Admin/auto-provisioning-using-SCIM.htm" target="_blank"&gt;https://help.qlik.com/en-US/cloud-services/Subsystems/Hub/Content/Sense_Hub/Admin/auto-provisioning-using-SCIM.htm&lt;/A&gt;. I've tried it. The provision works but I can't set a rule to auto assign Entitlement/License type based on User Group (like Professional access rules from on-prem, for example). I still have to do it manually in QMC.&lt;/P&gt;
&lt;P&gt;Any advice/update will be greatly appreciated.&lt;/P&gt;
&lt;P&gt;Best regards,&amp;nbsp;&lt;BR /&gt;Wannita&lt;/P&gt;</description>
      <pubDate>Mon, 08 May 2023 09:53:19 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/2068599#M12780</guid>
      <dc:creator>kanhomcake</dc:creator>
      <dc:date>2023-05-08T09:53:19Z</dc:date>
    </item>
    <item>
      <title>From now on, please track this idea from the Ideation por...</title>
      <link>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/2100848#M14096</link>
      <description>&lt;P&gt;From now on, please track this idea from the Ideation portal.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;A title="Link to new idea" href="https://ideation.qlik.com/app/#/case/281402" target="_blank" rel="noopener"&gt;Link to new idea&lt;/A&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Meghann&lt;/P&gt;&lt;P data-unlink="true"&gt;&lt;EM&gt;NOTE: Upon clicking this link 2 tabs may open - please feel free to close the one with a login page. If you &lt;STRONG&gt;only&lt;/STRONG&gt; see 1 tab with the login page, please try clicking this link first: &lt;STRONG&gt;&lt;A title="Authenticate me!" href="#" target="_blank" rel="noopener"&gt;Authenticate me!&lt;/A&gt;&lt;/STRONG&gt;&amp;nbsp;t&lt;/EM&gt;&lt;EM&gt;hen try the link above again. Ensure pop-up blocker is off.&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 02 Aug 2023 15:56:23 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/2100848#M14096</guid>
      <dc:creator>Meghann_MacDonald</dc:creator>
      <dc:date>2023-08-02T15:56:23Z</dc:date>
    </item>
    <item>
      <title>Re: Provisioning User access in Qliksense Saas - Status changed to: Closed - Archived</title>
      <link>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/2100849#M14097</link>
      <description />
      <pubDate>Wed, 02 Aug 2023 15:56:25 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Suggest-an-Idea/Provisioning-User-access-in-Qliksense-Saas/idc-p/2100849#M14097</guid>
      <dc:creator>Ideation</dc:creator>
      <dc:date>2023-08-02T15:56:25Z</dc:date>
    </item>
  </channel>
</rss>

