Configuring CyberArk Identity Profile Authentication for Data Sources

This article describes how to configure CyberArk authentication for a Data Source by creating an Identity Profile.

1. Create a New Identity Profile

Access Admin > System > Identity Profiles

A list page containing all the Identity Profiles opens.

  1. Below the grid, click [+ Identity Profile]

2. Configure Identity Profile

See Where to Find the Parameters for CyberArk Configuration for details on parameters location in CyberArk account.

  1. Give a Name to the Identity Profile
  2. Enter Central Credential Provider URL in the following format: https://<CCP host and port>/AIMWebService
  3. Enter Application ID
    • Access your CyberArk account > Applications > Applications List
  4. Enter Username
  5. Type: CyberArk
  6. Enter Safe name
    • Access Policies > Access Control (Safes)
  7. Enter Folder name
    • Access Accounts > Accounts View (Classic UI) >Advanced tab
  8. Enter Object name
    • Access Accounts > Accounts View (Classic UI) >Advanced tab > Name parameter
  9. Certificate File: click [Upload Certificate]
  10. Enter the Certificate Password
  11. Click [Test Connection], this will also save your entries
Where to Find the Parameters for CyberArk Configuration
Application ID
  1. Access the Accounts tab
  2. Copy the Application ID from the Applications List
Safe, Folder, Object
  1. Access Accounts > Accounts View (Classic UI)
  2. Click on the Account
  3. Access the Advanced tab of Account Details
  4. Safe = Safe
  5. Folder = Folder
  6. Name = Object

3. Add the Identity Profile to a Data Source

Access the Info tab of the Data Source

  1. Auth Type: Identity Profile
  2. Select the created Identity Profile
  3. Click [Test Connection], this will also save your entries