Configure SCIM in Azure AD
  • 26 Oct 2023
  • 2 Minutes to read
  • Dark
    Light
  • PDF

Configure SCIM in Azure AD

  • Dark
    Light
  • PDF

Article Summary

Once Axiad completes the SAML configuration in your Axiad Cloud tenant, continue with these steps.

  1. Sign into Entra ID as a Global administrator.
  2. Select Enterprise applications from the left menu.
  3. Search for and select the Axiad Cloud enterprise application that was created in the Configure SAML in Azure AD procedure.
    NOTE
    Axiad uses the same application for SAML and SCIM.
  4. Click Users and groups.
  5. Confirm the appropriate users and/or groups are listed that you want to provision to Axiad Cloud. If these groups are not yet set up, see Configure SAML in Azure AD for procedures.
  6. Select Provisioning.
  7. Click Get started.
  8. From the Provisioning Mode dropdown, select Automatic.
  9. In the Tenant URL field, enter the following URL:
    https://ucms-<tenantName>.<platform>.axiadids.net/secuera/api/v3/scim/<tenantName>
  10. In the Secret Token field, enter the token Axiad provided you.
  11. Click Test Connection to confirm that it is working. If your connection fails, reach out to Axiad support.
  12. Click Save.
  13. Expand the Mappings section.
  14. Click Provision Azure Active Directory Users.
  15. Delete all attributes other than the externalID attribute and those specified in the attribute list that is provided to you by the Axiad Customer Success team.
    NOTE
    The attribute list Axiad provides includes all attributes mapped within your Axiad Cloud tenant. You must delete all unused attributes from the SCIM mapping to avoid unnecessary data synchronizations.
    See Axiad Cloud SCIM Support for details on which attributes are required for Axiad Cloud.
  16. Confirm the settings, then click Save, then Yes.
  17. Click Axiad Cloud SCIM | Provisioning in the breadcrumb link at the top of the page.
    The Provisioning page displays.
  18. Click Edit attribute mappings.
  19. Toggle Provisioning Status to On.
  20. Click Save.
  21. Click Axiad Cloud SCIM | Provisioning in the breadcrumb link at the top of the page.
    The Provisioning page displays again, and SCIM provisioning is now configured to synchronize the added users and groups. This page displays the status of the provisioning, and has a link to view the provisioning logs. The synchronization is triggered every 20-40 minutes, depending on the number of users and group that are being synchronized.
NOTE

Entra ID SCIM synchronization does note send empty/null values for user attributes. If a user attribute was previously populated with data in Axiad Cloud via SCIM, and then that attribute is set to empty/null in Entra ID, the change will not be sent to Axiad Cloud.

NOTE
If Entra ID encounters an error during SCIM provisioning it will reschedule that item for the next cycle and will be continually retired while also gradually scaling back the frequency of retires. If the errors persist through retries the job will be put into quarantine, then stopped, until an Entra ID Administrator restarts the service. See Microsoft documentation for more information.





Was this article helpful?

Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.