Restrict Instance Access

Ambika  Sekar
Tera Contributor

With Azure AD SSO Integration, all the users can log in to DEV and TEST Environments with their AD credentials. How to restrict some AD users from accessing the Lower Environments when they try to login with SSO..

3 REPLIES 3

lmundere
Kilo Sage

 You will have to disable SSO in this case, but also that means that for you admins, you will create local accounts to be able to log in.

Dr Atul G- LNG
Tera Patron
Tera Patron

Hi @Ambika Sekar 

 

https://docs.servicenow.com/bundle/vancouver-platform-security/page/integrate/single-sign-on/referen...

 

https://docs.servicenow.com/bundle/vancouver-platform-user-interface/page/build/service-portal/conce...

 

Local account is good way to achieve. 

*************************************************************************************************************
If my response proves useful, please indicate its helpfulness by selecting " Accept as Solution" and " Helpful." This action benefits both the community and me.

Regards
Dr. Atul G. - Learn N Grow Together
ServiceNow Techno - Functional Trainer
LinkedIn: https://www.linkedin.com/in/dratulgrover
YouTube: https://www.youtube.com/@LearnNGrowTogetherwithAtulG
Topmate: https://topmate.io/atul_grover_lng [ Connect for 1-1 Session]

****************************************************************************************************************

Amarjeet Pal
Kilo Sage
Kilo Sage

Hello Ambika,

 

Hope you are doing well !!

This can be achieved but you need to take the help of the Azure admin team.

 

  • You can create a Conditional Access policy in Azure AD that restricts access to specific applications (DEV and TEST environments) for certain users or groups.

I hope this is helpful.

 

Thanks

Amarjeet Pal
Advania UK