Create and modify managed object types
In Advanced Identity Cloud, you can create, modify, and delete managed object types to meet your organization’s needs. You can modify default managed object types (such as users, roles, and groups) and create new custom managed object types to represent additional identity types for your organization, such as devices.
| Modifying application managed object types isn’t supported. |
Learn more about the identity schema in Advanced Identity Cloud identity schema.
Create a custom managed object type
To create a custom managed object type:
-
In the Advanced Identity Cloud admin console, switch to the realm where you want to configure the object type.
-
Go to Identities > Configure.
-
On the Configure Identities page, click Managed Object Type.
-
Enter a name and display name for the managed object type, and enter optional details, as needed.
The name can only include the characters
a-z,A-Z, and0-9. The display name specifies what the object type will be called in the object type’s UI label. -
Click Save Profile.
The new managed object type is created, and its configuration page opens.
-
Use the tabs to configure object type settings and schema. Learn more in Managed object type settings reference.
Modify a managed object type
| Users | Roles, assignments, groups, organizations |
Applications | Custom | |
|---|---|---|---|---|
Action allowed? |
Yes |
Yes |
No |
Yes |
To modify a managed object type:
-
In the Advanced Identity Cloud admin console, switch to the realm where you want to configure the managed object type.
-
Go to Identities > Configure.
-
On the Managed Object Types page, click the managed object type you want to modify to open its configuration page.
-
Use the tabs to modify managed object type settings and schema. Learn more in Managed object type settings reference.
Delete a managed object type
| Users | Roles, assignments, groups, organizations |
Applications | Custom | |
|---|---|---|---|---|
Action allowed? |
No |
No |
No |
Yes |
|
When you delete a custom managed object type, all identity data associated with it is permanently deleted and can’t be recovered. |
To delete a custom managed object type:
-
In the Advanced Identity Cloud admin console, switch to the realm where you want to configure the managed object type.
-
Go to Identities > Configure.
-
On the Managed Object Types page, click for the managed object type you want to delete and select Delete.
-
Click Delete to confirm the deletion.
Managed object type settings reference
Use the following tabs to configure settings for the managed object type in the Advanced Identity Cloud admin console.
- Details
-
Use this tab to specify basic details about the managed object type, such as its display name and icon.
Click Show advanced settings to constrain identity queries. Learn more in Constrain identity queries.
- Properties
-
Use this tab to add, modify, and delete properties for the managed object type.
Learn more in Customize managed object types.
- Relationships
-
Use this tab to specify relationships for the managed object type. For example, to connect end users to managers, end users to devices, or organizations to child organizations.
Learn more in Configure relationships.
- Advanced Sync
-
Use this tab to configure synchronization settings for that managed object type, such as synchronizing objects of that type to an external system and mapping their properties.
Learn more in Advanced sync for managed object types.