This portal is to open public enhancement requests for IBM Sterling products and services. To view all of your ideas submitted to IBM, create and manage groups of Ideas, or create an idea explicitly set to be either visible by all (public) or visible only to you and IBM (private), use the IBM Unified Ideas Portal (https://ideas.ibm.com).
Shape the future of IBM!
We invite you to shape the future of IBM, including product roadmaps, by submitting ideas that matter to you the most. Here's how it works:
Search existing ideas
Start by searching and reviewing ideas and requests to enhance a product or service. Take a look at ideas others have posted, and add a comment, vote, or subscribe to updateson them if they matter to you. If you can't find what you are looking for,
Post your ideas
Post an idea.
Get feedback from the IBM team and other customers to refine your idea.
Follow the idea through the IBM Ideas process.
Specific links you will want to bookmark for future use
Store user authorization and store assignment consideration in IdP
We've come across multiple retail engagements where IdP system e.g. LDAP system takes care of user authentication and also maintains the user group assignment. With OMS CoC enabled in IBM ID, it's mandatory to first create a user in OMS with the matching IBM ID email ID. Also there is no option to fetch user group list in the SAML assertion. Currently we're working on Barnes and Noble education use case and this is their requirement as well. There are 1400 stores and multiple part time and new store users e.g. current students. It's quite hard to keep maintaining every user in LDAP and then also manually create these users in OMS as well. Our expectation is at least with SAML assertion, OMS should be able to fetch the list of user groups and give a hook in OMS to use that to update user's group.
What is your industry?
How will this idea be used?
When a store user joins a store as store associate or manager, her information will be saved in LDAP system. When she logs in to store application, IBM OMS will perform authentication using IBM ID through LDAP system. If she is a new user, her user account will be auto created in OMS and doesn't need to be manually created in OMS. Also authorization details e.g. role as associate/manager will be auto assigned in OMS
Do not place IBM confidential, company confidential, or personal information into any field.