Back to home

Okta SCIM setup

DeepFabric's integration with Okta using SCIM enables automated user provisioning and lifecycle management. This integration simplifies identity management by automatically syncing users between Okta and DeepFabric, reducing manual administration while improving security and compliance.

Overview

SCIM (System for Cross-domain Identity Management) is an industry-standard protocol for automating the exchange of user identity information. The DeepFabric-Okta SCIM integration offers:

  • Automated user provisioning from Okta to DeepFabric
  • Real-time synchronization of user attributes and profile information
  • Automated deactivation when users are disabled in Okta
  • Role and group mapping for access control

Setup Guide

Prerequisites

  1. Okta administrator account
  2. DeepFabric Enterprise account with SCIM integration capabilities
  3. Admin access to your DeepFabric organization

Configuration Steps

Step 1: Obtain SCIM Endpoint and Token from DeepFabric

  1. Navigate to [Profile Icon] > Organizations > [Organization Name] > Identity Management
  2. Toggle the Enable SCIM switch to On under Dashboard tab.

okta-scim-tokens

  1. You can copy your SCIM Base URL from Dashboard tab.

okta-scim-tokens

  1. You can generate your new Token (Bearer Authentication) from Auth Tokens tab.

okta-scim-tokens

Your Token is copied to your clipboard upon generation. Make sure to save it in a secure location as it will be used in the next step.

Step 2: Create SCIM Integration in Okta

  1. Sign in to your Okta Admin Console
  2. Navigate to Applications > Applications
  3. Click Browse App Catalog and search for "SCIM 2.0 Test App (Header Auth)"

We're working with Okta towards publishing our own dedicated app in Okta's Integration Network (OIN). Once available, we will notify you so you can switch to the certified integration.

okta-scim-integration

  1. Select the matching app from the results, and then click on Add Integration

okta-scim-integration

  1. In the General Settings section, provide suitable name like "DeepFabric SCIM" and click Next.
  2. In the Sign-On Options section, click Done.

Step 3: Configure SCIM Integration

  1. Under the DeepFabric SCIM 2.0 App, click Provisioning tab, then click Configure API Integration.

okta-scim-integration

  1. Click Enable API Integration and enter the following details:
    • SCIM connector base URL: Your DeepFabric SCIM Base URL
    • API Token: Your DeepFabric SCIM API Token

okta-scim-integration

  1. Click Test API Credentials to verify your configuration

  2. Click Save

Step 4: Configure Attribute Mappings

  1. In your DeepFabric SCIM application in Okta, go to the Provisioning tab > To App.
  2. Click on Edit button against the Provisioning to App heading.

okta-scim-integration

  1. Select features as required. DeepFabric supports the following features:
    • Create Users
    • Update User Attributes
    • Deactivate Users

okta-scim-integration

  1. Click Save

Step 5: Assign Users and Groups

  1. Go to the Assignments tab under the DeepFabric SCIM 2.0 App.
  2. Click Assign and select Assign to People.
  3. Select the users you want to provision to DeepFabric.

Verification

After configuration, Okta will begin provisioning users to DeepFabric. To verify:

  1. Assign a test user to the DeepFabric application in Okta
  2. Check the System Log in Okta for successful provisioning events
  3. Log in to DeepFabric and confirm the user was created with the correct attributes
  4. Test deprovisioning by deactivating the user in Okta

Troubleshooting

Common Issues

  • Connection Failed: Verify your SCIM URL and API token are correct
  • Provisioning Errors: Check Okta System Log for detailed error messages
  • Missing User Attributes: Review and adjust attribute mappings in Okta

Getting Help

For assistance with your Okta-DeepFabric SCIM integration, contact DeepFabric Support at support@deepfabric.ai or through your account manager.