Workday Data Connector Instructions

This article is meant to provide you insight on what you should expect to see when attempting to connect Workday to GoProfiles with your Customer Success Manager. 

Overview

To authenticate your Workday account, you will need to provide the following information:

  • WSDL
  • ISU Username
  • ISU Password
  • Workday Tenant Name

Prerequisites

Please ensure you have Administrator permissions in your company’s Workday instance.

Instructions

Step 1: Create an Integration System User (ISU).
  1. In your Workday portal, log into the Workday tenant.
  2. In the Search field, type Create Integration System User.
  3. Select the Create Integration System User task.
creating an integration system user in workday
  1. On the Create Integration System User page, in the Account Information section, enter a user name, and enter and confirm a password.
  2. Ensure the Require New Password at Next Sign In box is not selected and click OK.
creating an integration system user account information
  1. To ensure the password doesn’t expire, you’ll want to add this new user to the list of System Users. To do this, search for the Maintain Password Rules task.
maintaining password rules
  1. Add the ISU to the System Users exempt from password expiration field.
adding ISU in the password expiration
  1. Enter the Integration System User name and password in the linking flow.
entering the credentials for the ISU in workday
Step 2: Create a Security Group and assign an Integration System User.
  1. In the Search field, type Create Security Group.
creating a security group within workday
  1. Select the Create Security Group task.
  2. On the Create Security Group page, select Integration System Security Group (Unconstrained) from the Type of Tenanted Security Group pull-down menu.
type of tenanted security group- integration system security group
  1. In the Name field, enter a name and click OK.
  2. On the Edit Integration System Security Group (Unconstrained) page, in the Integration System Users field, enter the same name you entered when creating the ISU in the first section.
editing integration system security group
  1. Click OK.
Step 3: Configure domain security policy permissions.
  1. In the Search field, type Maintain Permissions for Security Group.
maintaining permissions for security group
  1. Make sure the Operation is Maintain, and the Source Security Group is the same as the security group that was assigned in Step 2.
adding source security group
  1. On the next screen, add the corresponding Domain Security Policies depending on your use case:
    • For connecting Workday HRIS, add HRIS Permissions
adding more domains for security group
    Step 4: Activate security policy changes.
    1. In the search bar, type “Activate Pending Security Policy Changes” to view a summary of the changes in the security policy that needs to be approved.
    activate pending security policy changes
    1. Add any relevant comments on the window that pops up.
    2. Confirm the changes in order to accept the changes that are being made and hit OK.
    confirm security policy changes
    Step 5: Validate the authentication policy is sufficient

    Note: You don’t have to create a new Authentication Rule if you already have an existing one set to User Name Password or Any. You can instead add the ISU to that existing rule.
    You will need to create a new rule if SAML is the only Authentication Rule you see for “Allowed Authentication Types.”

    1. Search for Manage Authentication Policies.
    validating the authentication polict is sufficient
    1. Click Edit on the authentication policy row.
    editing authentication policy
    1. Create an Authentication Rule.
    editing the authentication policy
    1. Enter a name, add the Security Group, and ensure Allowed Authentication Types is set to Specific User Name Password or Any.
    authentication allowlist
    Step 6: Activate all pending authentication policy changes.
    1. In the search bar type, activate all pending authentication policy changes.
    activate all pending authentication policy changes
    1. Proceed to the next screen and confirm the changes. This will save the Authentication Policy that was just created or edited.
    Step 7: Obtain the web services endpoint URL.
    1. Search in Workday for Public Web Services.
    public web services report
    1. Find Human Resources (Public).
    2. Click the three dots to access the menu.
    3. Click Web Services > View WSDL.
    adding public web services
    1. Navigate to the bottom of the page that opens.
    2. Copy the full URL provided under Human_ResourcesService (Workday HRIS). The URL will have a format similar to https://wd2-impl-services1.workday.com/ccx/service/acme/Human_Resources/v43.0
    copying the URL
    1. Enter the Web Services Endpoint URL into the linking flow.
    entering the web services endpoint URL
    1. Click Submit.​
    Note
    • Implementation/sandbox tenant Workday accounts will result in slower syncs, as fewer resources are dedicated to the tenant
    • In order to increase resourcing for API limits for your Workday tenant, please reach out to Workday Support or your Workday Customer Account Manager.

    You should now be able to set up the Workday Data Connector with your Customer Success Manager. If you need further assistance, please consult the GoProfiles Help Center or Chat with Us.

    Need more help?

    Technical support

    Send us your technical inquiries

    Contact us →
    Contact sales

    Demo or answer sales questions

    Contact sales →
    Chat with us

    Get quicker responses with chat

    Chat now →
    Blog

    GoProfiles and productivity articles

    View blog →
    Box vector large Box vector medium Box vector small

    Connect employees with AI profiles and rewards

    Connect employees with AI profiles and rewards