Skip to content

SCIM Provisioning

SCIM (System for Cross-domain Identity Management) allows your identity provider to automatically create, update, and deactivate HarborGuard users.

Setup

  1. Navigate to Settings > Security > SCIM
  2. Copy the SCIM endpoint URL and bearer token
  3. Configure your IdP (Okta, Azure AD, OneLogin, etc.) with these values

Group-to-Role Mapping

Map IdP groups to HarborGuard roles for just-in-time provisioning. When a user signs in, their role is determined by their group membership.

Token Rotation

Rotate the SCIM bearer token periodically from the SCIM settings panel.

On this page