SCIM admin role

Prev Next

SCIM Admin access gives the user full API access to the Trellix System for Cross-Domain Management (SCIM) services. Trellix IAM uses SCIM services to facilitate migration of Email Security - Cloud user profiles to Trellix IAM. Only Trellix Customer Support staff can assign this role.

Note

SCIM Admin is a global role, and it cannot be modified or deleted. It is also a reserved role that is used by Trellix Customer Support only.

Viewing the roles and entitlements

Although you cannot assign the SCIM Admin role, you can view the role's entitlements. To view the entitlements assigned to the role, filter the list of roles to show only IAM Web UI roles, and then drill down from the SCIM Admin role to its component entitlements.

Requirements

To view the entitlements associated with the SCIM Admin role:

  1. Log in to the IAM Web UI.

  2. Select Organization Settings > Roles. The Roles page lists the IAM global roles and custom roles in your IAM organization.

  3. Filter the list on the Description column, specifying the match string IAM in all uppercase letters. (The filter is case-sensitive.) The list refreshes and shows only the roles that grant access to the IAM Web UI.

    CloudIAM_Roles_IAM_4_scim.png
  4. Click scim in the Name column.

    The Assigned Entitlements panel lists the entitlements assigned to the role.

List of entitlements