NOTE: If you are on version 4.3.2 and above, click Cloud Connector Config Custom Attributes.
Once Skyhigh Cloud Connector has connected to your Directory Server or collected your CSV file, you can configure Custom Attributes for use with Sanctioned IT.
NOTE: There is a limit of 10 Sanctioned Custom Service Attributes that can be mapped.
- After connecting to the attribute source, click Sanctioned Settings.
- To upload AD attributes for user groups in Sanctioned IT, under Skyhigh CASB Data Upload, select Enabled. This will also send your unique Salt to Skyhigh CASB to tokenize user information received through API and proxy integration feeds.
- For all the attributes you want to send for user group configuration, activate the Attribute to Send checkbox.
- For all attributes that are needed to uniquely identify a user, activate the Include as Key checkbox.
IMPORTANT: If an Attribute you need it missing, add it to the default Attributes list on the Domain Configuration > Domain Setup page.
- Click Save.
When an event occurs that pertains to a Custom Attribute, the data for that Custom Attribute will be appended to the event.
Upload Sanctioned Custom Attributes from the Command Line
You can use the command line to import and upload custom attributes using the shnlpcli ca --upload command.
shnlpcli ca --upload
shnlpcli ca --import --upload
The complete details for using customattributes(ca) are as follows:
customattributes(ca) Command To Manage Custom Attributes Settings Usage: customattributes(ca) [options] Options: --dump Dumps the imported custom attributes to a file Default: false --file Output CSV file for custom attributes information --import Performs import of custom attributes Default: false --reset-timestamp Resets the last import timestamp Default: false --upload Uploads the custom attributes for Sanctioned user groups after importing Default: false