Connect identity evidence¶
Add the identity evidence RAIL uses to resolve usage owners. See Docs authority & product state.
Execute this step in SaaS guided
setup. For self-hosted
deployments, use the same /domains/adoption/onboarding path on your own
instance host.
Steps¶
Role: Engineer for connector setup; Admin for directory role changes.
- Choose the directory, repository, tag, or approved identity source.
- Register its read-only identity-resolution connector and select the allowed tenant or organization scope.
- Run the readiness probe and inspect the sample identities and stable keys.
- Set evidence precedence when more than 1 source can resolve the same owner.
IdP federation authenticates users to Venturi. An identity-resolution connector provides attribution evidence. Do not substitute 1 for the other.
Success evidence¶
The connector is read-only and fresh, sample identity keys resolve without cross-tenant results, and unresolved identities remain explicitly unknown.
Recovery¶
Correct the connector scope, stable key, or precedence rule named by the probe. If evidence conflicts, keep the record unresolved until an authoritative source is available.