Configuring a channel
To complete your PingOne provisioning configuration, map the necessary attributes in your channel configuration.
About this task
For more information about these steps, see Managing channels in the PingFederate documentation.
Steps
-
On the Manage Channels tab, click Create.
-
On the Channel Info tab, in the Channel Name field, type a unique name. Click Next.
-
On the Source tab, on the Active Data Store list, select the data store that you configured in Supported attributes reference. Click Next.
-
On the Source Settings tab, click Next.
-
On the Source Location tab, in the Base DN field, type a base DN that includes the users that you want to provision.
-
In the Users section, complete the Group DN or Filter fields to identify the users that you want to provision. Click Next.
-
On the Attribute Mapping tab, map the required attributes. For a list of attributes, see Supported attributes reference.
For general information about attribute mapping, see Mapping attributes in the PingFederate documentation. Custom attributes can also be mapped after being added. For more information on adding custom attributes, see Adding user attributes and the PingOne Platform API Reference.
-
On the Username row, click Edit.
-
On the
Username
Attribute Mapping tab, in the Root Object Class and Attribute lists, select the attribute in your data store that matches theUsername
attribute in PingOne. For more information, see User and group management. -
Click Add Attribute, and then click Done.
-
On the Population ID row, click Edit.
-
On the Population ID mapping tab, do one of the following:
-
Map a static population ID.
From the Default Value list, select the PingOne population that you want to target. Click Done.
The Default Value list is only available if you entered the correct client credentials from Connecting PingFederate to PingOne so the provisioner will populate the list accordingly.
-
Map a dynamic population ID.
In the Root Object Class and Attribute lists, select the user attribute in your data store that contains the population ID.
Click Add Attribute, and then click Done.
To get the ID for a population, see View populations in the PingOne documentation.
-
-
If you want to manage users and devices for the PingOne MFA service, map any combination of the
MFA Device Email
andMFA Device SMS
attributes, and map or assign theMFA Enabled
attribute. For details, see Supported attributes reference. -
Click Next.
-
-
On the Activation and Summary tab, on the Channel Status row, click Active. Click Done.
-
On the Manage Channels tab, click Done.