Skip to main content

Recently we decided to activate the SCIM functionality in Celonis so that user and groupsare provisioned automatically by the identity provider.

Unfortunately it is not working and no connection to the Active Directory can be established and the functionality is not working.

Are there any specific settings that need to be set in the Active Directory so that SCIM API can work as intendet?

Hi Rosen - Have you tried the steps in https://docs.celonis.com/en/configuring-scim-api--preferred-.html. If these do not work, please open a support case and the team will assist.
One other thing to check before you log a support case.

Currently, we support only one (and working) email address in EMS. We don’t support aliases/secondary emails/email addresses without access to the mailbox. The only way customer can fix it is to set the “userName” in the SCIM User they are trying to invite to the working email address. This should be configured on the AD level through the mapping settings - How to setup SCIM with Azure Active Directory? | Reftab Blog point 10.

Hello,

 

Thank you for the answers. We are currnetly not using Azure Active Directory, but ADFS and that is why we are struggling to setup everything right. Are there any hints for what to do to setup SCIM in ADFS?

 

Thank you,


Hi Rosen, can you please open a support ticket for this and provide all the necessary information about the issue you're facing?

Thank you for your understanding.

Reply