IAM Admin Service

Tenant Management

Tenant Online Phase Key Version
IAM Admin Service

Tenant Management

No tenants found No Transit keys found in OpenBao. Create the first tenant to get started.
← Back
IAM Admin Service

Add Tenant Configuration

Target Organization

This organization already has a Provisioning Agent configuration.

Active Directory
Attribute Mapping

Agent Behavior
Sync
Key Rotation
Proxy (optional) not configured

Auto-Updater Runtime
← Back to Form
IAM Admin Service

New Tenant — Preview

iam-provisioning-agent.json
iam-auto-updater.json
← Back to Dashboard
IAM Admin Service

Tenant Onboarded

Transit key created
JWT auth mount
Policy created
Entity & alias
OIDC role
identity/oidc/role/admin-center
Runtime docs seeded
Wrap token issued
Tenant onboarded

Tenant is onboarded. Policy is not yet attached — the org admin must complete enrollment and then click Confirm.


Tenant
Key ID
Wrap Token
This token is shown only once. Copy it now — it cannot be retrieved after you leave this page.
Runtime Config
← Back to Dashboard
IAM Admin Service

IAM Provisioning Agent Configuration

Organization Tenant Slug: Resources SCIMKeycloak SCIM realm (tenant broker) CoreKeycloak Core organization OpenBaoOpenBao tenant KV
Operational Status Confirmation Status
Key version Created Key Version Min Dec. Version Deployed versions Provisioning Agent Auto-Updater
No data yet
Map SCIM group display names to IAM Core target group names. Click Suggest mapping for a best-effort proposal (exact and normalized name match against the tenant's IAM Core subgroups). Suggestions are unsaved until you click Save; existing entries are never overwritten.
SCIM Group (display name) IAM Core Target Group Status