
- Overview
- Configuration
Vanta
Automate user provisioning with Vanta and ADManager Plus integration
Vanta is a compliance automation platform designed to help businesses simplify and streamline their compliance workflows, ensuring they meet industry standards. By integrating Vanta with ADManager Plus simplifies user provisioning by user lifecycle management, ensuring consistent and accurate updates in Active Directory (AD), Exchange, Microsoft 365, and other connected systems.
Automated user provisioning
Automatically create, modify, and delete user accounts in AD and eliminate manual intervention to ensure accurate and consistent user account management.
Enhanced data accuracy
Ensure consistent employee information across Active Directory and Vanta, which reduces errors in workforce management.
Need assistance to integrate Workable with ADManager Plus?
How to integrate ADManager Plus and Vanta
Prerequisites
Vanta uses OAuth2.0 to authorize API requests. You'll need to have the client_id and client_secret to retrieve desired information and perform tasks in Vanta. Refer to Vanta's API documentation for more details.
Privileges
To import users from Vanta (inbound action): Ensure the account used for authentication has permission to read all user accounts.
To perform any action or query in Vanta (outbound action): Ensure the account used for authorization has permission to perform the desired action.
Note: ADManager Plus comes with a preconfigured set of APIs that help perform basic actions with the integration. If the action you require is not available, please gather the necessary API details from Vanta's API documentation to configure inbound or outbound webhooks to perform the required actions.Authorization configuration
- Log in to ADManager Plus and navigate to Directory/Application Settings.
- Go to Application Integrations, then search for and select Vanta.
- Toggle the Enable Vanta Integration button on.
- On the Vanta Configuration page, click Authorization.
- Enter the client_id and client_secret values generated in Vanta into the respective fields.
- Click Configure.
Inbound webhook configuration
Inbound webhooks enable you to fetch user data from Vanta and send it to ADManager Plus. The attribute mapping configured in this section can be selected as the data source during automation configuration to perform the desired action on the list of users received from the API response. To configure an inbound webhook for Vanta:
- Under Inbound Webhook, click Vanta Endpoint Configuration.
- In the Endpoint Configuration tab, an endpoint (Vanta USERS ENDPOINT) comes preconfigured with Endpoint URL, API Method, Headers, and Parameters fields to fetch user accounts from Vanta. However, if you would like to use a new endpoint to import users, you can configure one using the + Add API endpoint button and filling in the required fields as per Vanta's API documentation. Click here to learn how.
- API key: The API key value pair is preconfigured as a header for authenticating API requests as configured during authorization configuration.
- Macros: You can add macros to your endpoint configuration to dynamically change it, as per your requirements, using the macro chooser component.
- Additional headers: Refer to Vanta's API documentation and configure additional headers and parameters, if required.
- Once done, click Test & Save. A response window will display all the requested parameters that can be fetched using the API call. Click Proceed.
- Refer to Vanta's API documentation to learn about the parameters that must be configured to fetch only specific parameters.
- You can configure multiple endpoints for Vanta using the + Add API endpoint button. Click here to learn how.
- Click Data Source - LDAP Attribute Mapping to match endpoints and to map AD LDAP attributes with the respective attributes in Vanta.
- Click + Add New Configuration and perform the following actions:
- Enter the Configuration Name and Description, and select the Automation Category from the drop-down menu.
- In the Select Endpoint field, select the desired endpoint and a Primary Key that is unique to a user (e.g., employeeIdentifier). Note: When multiple endpoints are configured, this attribute must hold the same value in all the endpoints.
- In the Attribute Mapping field, select the attribute from the LDAP Attribute Name drop-down menu and map it with the respective column in Vanta.
- If you would like to create a new custom format for this, click Mapping Attribute.
Note:
Note:
[ADManager Plus also lets you customize the attribute format from Vanta.]:
- Click Save.
Outbound webhook configuration
Outbound webhook enables you to send changes made in AD to Vanta, and carry out tasks in Vanta—all from ADManager Plus. The webhooks configured in this section can be included in Orchestration Templates, which in turn can be used during event-driven and scheduled automations. They can also be applied directly on desired users to perform a sequence of actions on them (Management > Advanced Management > Orchestration). To configure outbound webhooks for Vanta:
- Under Outbound Webhook, click Vanta Webhook Configuration.
- Click + Add Webhook.
- Enter a name and description for this webhook.
- Decide on the action that has to be performed and refer to Vanta's API documentation for the API details, such as URL, headers, and parameters.
- Select the HTTP method that will enable you to perform the desired action on the endpoint from the drop-down menu.
- Enter the endpoint URL.
- Configure the Headers, Parameters, and Message Type in the appropriate format based on the API call that you would like to perform.
- Click Test and Save.
- A pop-up window will then display a list of AD users and groups to test the configured API call. Select the desired user or group over which this API request has to be tested and click OK. This will make a real-time call to the endpoint URL, and the selected objects will be modified as per the configuration.
- The webhook response and request details will then be displayed. Verify them for the expected API behavior, then click Save.