Create a SaaS account task on a ticket
Create, remove or update an employee’s account on a SaaS application as a SAAS_PROVISIONING task on a ticket, so the account can be scheduled, cancelled and completed like any task. Pass the untyped ticket the work belongs to, such as an onboarding ticket, as parentTicketId; without one Primo opens a ticket for the employee to hold the task. createTicket and createTask cannot make a typed task.
With an API integration the account is carried out by Primo, at once or on scheduleDate, and the task completes itself. Without one the task waits for an admin, who creates the account by hand and marks the task done, which records the account in Primo. Cancelling the task cancels the account change.
Use provisionSaasIdentity or deprovisionSaasIdentity for an account change nobody needs to track on a ticket. Returns the intent id, its taskId and the ticketId holding it. Entitlements are { id, name } pairs from getSaasById.
Refused with PARENT_TICKET_IS_TYPED or PARENT_TICKET_IS_A_TASK (pass the untyped ticket instead), PARENT_TICKET_NOT_FOUND, EMPLOYEE_NOT_FOUND, CREDENTIALS_RECIPIENT_REQUIRED for an application that generates a password (create that account from the cockpit), SAAS_APPLICATION_USER_REQUIRED for an UPDATE without identityId, and SAAS_APPLICATION_USER_NOT_FOUND for an identityId that belongs to another employee or application.
Authorizations
Use your Primo API key in the Authorization header as Bearer <API_KEY>.
Path Parameters
Body
The Primo employee the account is for (id from the employee endpoints).
^[a-f\d]{24}$PROVISION creates the account, DEPROVISION removes it, UPDATE re-applies the entitlements on it.
PROVISION, DEPROVISION, UPDATE The SaaS identity to update or remove (from getEmployeeSaasIdentities). Required for UPDATE.
^[a-f\d]{24}$The untyped ticket the work belongs to, such as the onboarding ticket. Omit it and Primo opens one.
^[a-f\d]{24}$Creates the task SCHEDULED: an integrated application is provisioned when it wakes on this date, not now.
^(?:(?:\d\d[2468][048]|\d\d[13579][26]|\d\d0[48]|[02468][048]00|[13579][26]00)-02-29|\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\d|30)|(?:02)-(?:0[1-9]|1\d|2[0-8])))T(?:(?:[01]\d|2[0-3]):[0-5]\d(?::[0-5]\d(?:\.\d+)?)?(?:Z))$Response
Intent id
The SAAS_PROVISIONING task that tracks the account
The ticket holding that task: the parentTicketId sent, or the one Primo opened
PROVISION, DEPROVISION, UPDATE When Primo carried the account out; null while it waits on its date or on the admin
^(?:(?:\d\d[2468][048]|\d\d[13579][26]|\d\d0[48]|[02468][048]00|[13579][26]00)-02-29|\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\d|30)|(?:02)-(?:0[1-9]|1\d|2[0-8])))T(?:(?:[01]\d|2[0-3]):[0-5]\d(?::[0-5]\d(?:\.\d+)?)?(?:Z))$^(?:(?:\d\d[2468][048]|\d\d[13579][26]|\d\d0[48]|[02468][048]00|[13579][26]00)-02-29|\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\d|30)|(?:02)-(?:0[1-9]|1\d|2[0-8])))T(?:(?:[01]\d|2[0-3]):[0-5]\d(?::[0-5]\d(?:\.\d+)?)?(?:Z))$