Active Directory SCIM - Can you sync Active Directory users and groups with SCIM?
The System for Cross-Domain Identity Management (SCIM) is an open standard protocol used to automate the transfer of user identity data across different systems and domains. Microsoft Entra, formerly known as Azure Active Directory, uses SCIM to synchronize user profiles and attributes across service providers, triggering updates or removals in response to changes in user status or roles. Companies can enable this feature on their Microsoft Entra instance by connecting it to a vendor's SCIM-based endpoint. Software vendors can support SCIM syncing with Azure Active Directory/Microsoft Entra by designing and building a SCIM endpoint, getting their app onto the Entra App Gallery, stress testing and looking at edge cases, and keeping reusability in mind. Alternatively, they can use done-for-you products like Directory Sync by WorkOS to enable SCIM provisioning from Microsoft Entra and other major corporate identity providers with a straightforward API-based integration.
Company
WorkOS
Date published
March 6, 2024
Author(s)
Word count
1080
Hacker News points
None found.
Language
English