Okta - SCIM Configuration

Enabling SCIM in Immuta

  1. Navigate to the App Settings page

  2. Expand your Azure AD configuration by clicking on the lefthand carrot ⌄

  3. Scroll down and check the Enable SCIM support for SAML box

    1. Copy down the SCIM URL and SCIM Api Key

  4. Scroll to the bottom of the IAM configuration section

    1. Select Test Connection

    2. Select Test User Login

      1. This may forward you to a login page for Okta

    3. Once a User has been successfully authenticated you'll see a pop-up in Immuta noting the users userid, profile, name, etc. Close this pop-up

  5. Select Save on the bottom left

Enabling Provisioning in Okta

  1. Navigate to your Immuta Application for Immuta

  2. Select the Provisioning tab

  3. Select Configure API Integration and check the Enable API Integration box

  4. In the Base URL and API Token fields, enter the SCIM URL and SCIM Api Key from section 1, step 3.1

  5. Select Test API Credentials

  6. Once you receive a successful connection select Save on the bottom right

  7. On the same Provisioning tab, select Edit on the right side

    1. Check the box for Create Users, Update User Attributes, and Deactivate Users

    2. Select Save

  8. If any users were added to the Application in Okta prior to enabling provisioning, you will have to do the following:

    1. Navigate to the Assignments tab

    2. If any Users have a red ! next to their name, select Provision User above the Users

    3. Select OK on the pop-up window

  9. This completes the SCIM setup

Last updated