SCIM Synchronization with Okta

This document describes how to configure SCIM synchronization between Okta and IDmelon for automated user provisioning.

Setup IDmelon For Provisioning

Log in to the IDmelon panel, go to App Integrations > SCIM, and click Okta.

IDmelon Panel - SCIM Configuration

Enable the connection by clicking the switch button.

IDmelon Panel - Enable Connection

You can see the SCIM URL and SCIM Token to use in the Okta panel.

IDmelon Panel - SCIM Credentials

The newly generated token will be shown only once. Make sure to copy and save it. If you created the first token and want to generate a new token, you can click on the New SCIM Token icon.

Setup Okta For Provisioning

From the Okta admin panel, click on the Applications menu, and then click on Browse App Catalog.

Okta - Browse App Catalog

In the Browse App Integration Catalog, search for SCIM, and select the SCIM 2.0 Test APP (Header Auth).

Okta - SCIM 2.0 Test APP

Then from the SCIM 2.0 Test APP (Header Auth) page, click on Add Integration.

Okta - Add Integration

Click on General Settings and in the Application label field, enter SCIM 2.0 - IDmelon.

Okta - General Settings

Okta - Application Label

Go to the next Sign-On Options and click the Done button.

Okta - Sign-On Options

Now go to the Provisioning tab of the created app, and click on Configure API Integration.

Okta - Configure API Integration

Click Enable API Integration and fill in the Base URL and API Token based on the values received from the IDmelon Panel.

Okta - API Integration Settings

Click on the Test API Credentials button.

Okta - Test API Credentials

You should see a success message. Now click the Save button.

Okta - Save Configuration

Go to the Provisioning tab and select the To App settings from the sidebar menu, then click the Edit button.

Okta - To App Settings

Enable the checkboxes for Create Users, Update User Attributes, and Deactivate Users, and then click the Save button.

Okta - Provisioning Settings

Sync Users of One Group

To sync all users inside a group:

Go to the Groups directory and select the group you want to sync.

Okta - Select Group

Go to the Applications tab and click on the Assign Application button.

Okta - Assign Application

From the list, click on the Assign button for the SCIM 2.0 - IDmelon application.

Okta - Assign SCIM Application

Click the Save and Go Back button and then the Done button.

Okta - Save Assignment

Okta - Assignment Complete

Now every user or new user in this group will be synced automatically.

Sync Group

If you want to sync the group itself, go to the Push Groups tab of the SCIM 2.0 - IDmelon application, click on Push Groups, select Find groups by name, find your group, and then click on the Save button.

Okta - Push Groups

Okta - Find Groups by Name

Okta - Select Group to Push

Okta - Group Push Settings

Okta - Save Group Push

Okta - Group Push Complete