Setting up SCIM with Azure Active Directory

Setting up SCIM with Azure Active Directory

Step 1. Create a provisioning app in Azure Active Directory

Step 1. Create a provisioning app in Azure Active Directory

Create an app in Azure AD to provision users and groups in
Informatica Intelligent Cloud Services
.
  1. Sign into Azure AD as an administrator and select
    Azure services
    Enterprise Applications
    .
  2. Select
    New application
    Create your own application
    .
  3. Enter a name for the app, select
    Integrate any other application you don’t find in the gallery
    , and click
    Create
    .
  4. In the left panel of the app, select
    Single Sign On
    and select
    SAML
    .
  5. On the
    Set up Single Sign-On with SAML
    page, configure the following settings, and then click
    Save
    :
    Setting
    Value
    Identifier (Entity ID)
    https://<organization ID>.<hostname>
    For example,
    https://12a3b4cdef5gh67ijklm8n.dm-us.informaticacloud.com/
    Reply URL (Assertion Consumer Service URL)
    <IICS base URL>/identity-service/acs/<organization ID>
    For example,
    https://dm-us.informaticacloud.com/identity-service/acs/12a3b4cdef5gh67ijklm8n
    Sign on URL
    <IICS base URL>/ma/sso/<organization ID>
    For example,
    https://dm-us.informaticacloud.com/ma/sso/12a3b4cdef5gh67ijklm8n
    You do not need to configure the
    Relay State
    or
    Logout Url
    here.
  6. On the
    User Attributes & Claims
    page, configure the attributes that you want to sync through the SAML token such as givenname, surname, and emailaddress.
  7. If you want to sync groups, create a group claim which sends the group external ID in the SAML response.
    App roles are sent in the SAML token by default, so you don't have to create a claim for roles.
  8. On the
    SAML Signing Certificate
    page, download the service provider metadata file as an XML file.
    You will use this file to set up SAML in
    Informatica Intelligent Cloud Services
    .

0 COMMENTS

We’d like to hear from you!