Let Oomnitza be your single source of truth!
You'll get complete visibility of your users as data from LastPass is automatically transformed into consumable information and actionable insights.
Connect Oomnitza and LastPass in minutes
Get the information and insights that you need to reduce costs and the time that you spend on administration tasks such as:
- Configurable dashboards and list views of key user information
- Configurable reports to share information about users with your colleagues and management
- Workflows that can be used to onboard and offboard employees
- Workflows for deactivating and deleting users
- Workflows for changing master passwords and resetting passwords
- Workflows for re-inviting users
- Workflows for getting a SaaS user's role and deactivating SaaS users
Navigation
Before you start
To stream LastPass user data into Oomnitza, you use basic authorization.
Best practice
For the integration with Oomnitza, create a dedicated user account.
Add credentials to the vault in Oomnitza
- Log into Oomnitza.
- Click Settings > Credentials, and then click Add new credential (+).
- Add the information details.
- Click the AUTHORIZATION tab.
- Select Basic Auth as the authorization type.
- Enter a username and password.
- Click CREATE.
Next
You use the credentials that you added to create and customize your LastPass user integration with Oomnitza.
You'll also need the following information to create the integration:
- Client ID (LastPass account number)
- Provisioning hash (API secret)
Useful links
CID (LastPass account number) and API secret (provisioning hash)
Create the user integration
Info and connect details
-
-
- From the menu, click Settings.
- On the Integrations page, scroll down to the Extended section for User Integrations.
- Click NEW INTEGRATION.
- In the New User Integration sidebar, click LastPass.
- Click APPLY and then click NEXT twice.
-
Connect page
Best practice
To ensure that only live user records are streamed from LastPass to Oomnitza, choose Update only as your integration preference. When you run the integration, you can check the error logs to see which user records weren't uploaded and why they weren't uploaded. You can then decide whether to upload the user records that were skipped by changing your integration preference to create and upload. See Access error logs.
- Enter a descriptive name for the integration such as LastPass Users. That'll be the name of the user integration that is shown on the Integrations page.
- From the User Selection list, select User plus SaaS User.
- From the installation type list, select Cloud.
- From the Credentials list, select the credentials for LastPass.
- From the Integration Preferences list, select Update only.
- Enter the name of the user of the integration.
- Enter your client ID.
- Enter the API secret (provisioning hash).
- Click Next.
Mappings
Map the LastPass fields to Oomnitza fields and create custom mappings to get the user information that you need.
Important
You must create custom mappings for the following date fields:
- Created
- Last Login
- Last Password Change
To make the labels are more readable, you change the names of the Created field to LastPass Users Created, the name of the Last Login field to LastPass Users Last Login, and the name of the Last Password Change field to LastPass Users Last Password Change. Make sure that the data type for these fields is set to short text.
Create custom fields
-
-
- Create custom mappings to map the LastPass fields to Oomnitza:
- Click the down arrow on the field that you want to map.
- Select Add new Oomnitza users field.
- Change the name of the field.
- Click CREATE.
- Assign a sync key to one of the fields such as the Username field.
- Assign an Oomnitza role to the users such as Employee.
- Click NEXT.
- Create custom mappings to map the LastPass fields to Oomnitza:
-
Custom LastPass to Oomnitza mappings
The following LastPass fields can be mapped to Oomnitza:
Admin
Applications
Attachments
Created
Disabled
Duo Username
Formfills
Fullname
Last Login
Last Password Change
MP Strength
Never Logged In
Notes
Password Reset Required
Sites
Totalscore
User Load Connector Sync Time
Username
Want to map more fields to Oomnitza?
Contact Support, or see Mapping extended connectors.
When you've completed mapping the LastPass fields, click NEXT.
Schedule
By default, user data is streamed to Oomnitza once every day.
You can configure the schedule to meet your needs such as changing the interval or changing the time so that the data is streamed when your system isn't busy.
- Configure your schedule.
- Click FINISH.
Result
A new tile is created for the integration on the Integrations page.
What to do next
If you want to see what information is collected now, click the tile on the Integrations page and click RUN.
Figure: Mock-up for illustration purposes
If you want to change the integration settings, you can click a navigation link on the page, such as 4 Mappings, and edit the settings.
Create workflows
To reduce your workload and automate complex and repetitive tasks, you can use the following API presets:
- Deactivate user
- Delete user
- Change master password and reset password
- Re-invite user
- From the menu, click Software and from the Workflow list, click SaaS Users.
- Click Add (+). The Begin and End blocks are automatically added to the sandbox.
- Enter the name and a description of the workflow.
- Edit the Begin block by choosing a schedule and adding the rules that will trigger the workflow. For example, add the rule Name equals LastPass, and a rule to trigger the workflow.
- Click the Blocks tab, and drag and drop the API block onto the canvas.
- Click the Edit button.
- Enter LastPass in the search field and and choose one of the following presets:
- LastPass Deactivate User
- LastPass Delete User
- LastPass Master Password Change
- LastPass Re-invite User
- LastPass Reset Password
- Make your changes. You'll be prompted to select your credentials, enter your CID (LastPass account number), your provisioning hash (API secret), and your username.
- Click SAVE.
- Connect the blocks.
- Validate, launch, and save your workflow.
SaaS User Role Retrieval
- From the menu, select Software.
- Click Workflow and select SaaS Users.
- Click Add workflow (+). The Begin and End blocks are automatically added to the canvas.
- Enter the name of the workflow and a description.
- Edit the Begin block. For example, you can complete these actions:
- Create a schedule for running the workflow.
- Use a rule to identify the SaaS software such as Name equals LastPass.
- Add rules to trigger the workflow . For example, you can add a rule to deactivate users who haven't logged in for a specified period.
- From the Integrations section, drag and drop the SaaS User Role Retrieval block onto the canvas.
- Edit the SaaS User Role Retrieval block.
- To find the preset, type LastPass.
- Click the right arrow (>) next to LastPass User Role.
- Select your credentials and enter your LastPass CID and API secret. (The API secret is also known as the provisioning hash in LastPass).
- Connect the workflows.
- Validate, save, and launch the workflow.
Unleash the power of Oomnitza
To get valuable actionable insights that help you manage your assets, learn how to:
- Configure dashboards for your users and software
- Configure custom reports about your users and software
- Create workflows to automate tasks
Comments
0 comments
Please sign in to leave a comment.