Skip to main content

Capabilities

Gather Harness credentials

Use a Harness service account API key token with account-scope read access to the RBAC surface. A personal API key token also works, but C1 recommends a dedicated service account for connector sync.
1
In Harness, create or select the service account that C1 will use.
2
Assign role bindings and resource groups that grant core_user_view, core_usergroup_view, core_serviceaccount_view, core_role_view, core_resourcegroup_view, and core_authsetting_view.
3
Create an API key and token for that service account.
4
Copy the token. Harness shows token values only at creation time.
5
Copy the Harness account identifier from the Harness UI URL.
6
Copy the Harness API base URL if you do not use Harness SaaS.

Configuration fields

Synced resource types

  • Users: Harness account users.
  • Service accounts: Harness service accounts.
  • User groups: user groups and group membership grants.
  • Roles: Harness roles and role assignment grants.
  • Resource groups: Harness resource groups used by role assignments.

Special notes

  • The connector targets the Harness NextGen platform API.
  • Harness SaaS uses https://app.harness.io. The connector authenticates with the Harness NextGen x-api-key header.
  • Role assignment grants can point to users, service accounts, or user groups.
  • Disabled role assignments are not emitted as grants.

Configure the Harness connector

Follow these instructions to use a built-in, no-code connector hosted by C1.
1
In C1, navigate to Apps > Connectors and click Add connector.
2
Search for Harness and click Add.
3
Choose where to add the connector: Create a new app, or Add to an existing app (then select the app).If you’re creating a new app, choose whether to link it to an application discovered from your identity provider: select Yes and pick the IdP application, or No to continue with just the connector.
4
Set the connector’s Name and, optionally, a Description.
5
Click the pencil icon next to Owners to choose who can configure and manage this connector.
6
Click Add. The connector is created and its configuration page opens.
7
Find the Settings area of the page and click Edit.
8
Paste the Harness settings into the relevant fields:
  • Base URL: Optional Harness API base URL.
  • API key: Harness API key.
  • Account identifier: Harness account identifier.
9
Click Save.
10
The connector’s label changes to Syncing, followed by Connected. You can view the logs to ensure that information is syncing.
Done. Your Harness connector is now pulling access data into C1.