DeepFabric's integration with Okta using SCIM enables automated user provisioning and lifecycle management. This integration simplifies identity management by automatically syncing users between Okta and DeepFabric, reducing manual administration while improving security and compliance.
Overview
SCIM (System for Cross-domain Identity Management) is an industry-standard protocol for automating the exchange of user identity information. The DeepFabric-Okta SCIM integration offers:
- Automated user provisioning from Okta to DeepFabric
- Real-time synchronization of user attributes and profile information
- Automated deactivation when users are disabled in Okta
- Role and group mapping for access control
Setup Guide
Prerequisites
- Okta administrator account
- DeepFabric Enterprise account with SCIM integration capabilities
- Admin access to your DeepFabric organization
Configuration Steps
Step 1: Obtain SCIM Endpoint and Token from DeepFabric
- Navigate to [Profile Icon] > Organizations > [Organization Name] > Identity Management
- Toggle the Enable SCIM switch to On under Dashboard tab.

- You can copy your SCIM Base URL from Dashboard tab.

- You can generate your new Token (Bearer Authentication) from Auth Tokens tab.

Your Token is copied to your clipboard upon generation. Make sure to save it in a secure location as it will be used in the next step.
Step 2: Create SCIM Integration in Okta
- Sign in to your Okta Admin Console
- Navigate to Applications > Applications
- Click Browse App Catalog and search for "SCIM 2.0 Test App (Header Auth)"
We're working with Okta towards publishing our own dedicated app in Okta's Integration Network (OIN). Once available, we will notify you so you can switch to the certified integration.

- Select the matching app from the results, and then click on Add Integration

- In the General Settings section, provide suitable name like "DeepFabric SCIM" and click Next.
- In the Sign-On Options section, click Done.
Step 3: Configure SCIM Integration
- Under the DeepFabric SCIM 2.0 App, click Provisioning tab, then click Configure API Integration.

- Click Enable API Integration and enter the following details:
- SCIM connector base URL: Your DeepFabric SCIM Base URL
- API Token: Your DeepFabric SCIM API Token

-
Click Test API Credentials to verify your configuration
-
Click Save
Step 4: Configure Attribute Mappings
- In your DeepFabric SCIM application in Okta, go to the Provisioning tab > To App.
- Click on Edit button against the Provisioning to App heading.

- Select features as required. DeepFabric supports the following features:
- Create Users
- Update User Attributes
- Deactivate Users

- Click Save
Step 5: Assign Users and Groups
- Go to the Assignments tab under the DeepFabric SCIM 2.0 App.
- Click Assign and select Assign to People.
- Select the users you want to provision to DeepFabric.
Verification
After configuration, Okta will begin provisioning users to DeepFabric. To verify:
- Assign a test user to the DeepFabric application in Okta
- Check the System Log in Okta for successful provisioning events
- Log in to DeepFabric and confirm the user was created with the correct attributes
- Test deprovisioning by deactivating the user in Okta
Troubleshooting
Common Issues
- Connection Failed: Verify your SCIM URL and API token are correct
- Provisioning Errors: Check Okta System Log for detailed error messages
- Missing User Attributes: Review and adjust attribute mappings in Okta
Getting Help
For assistance with your Okta-DeepFabric SCIM integration, contact DeepFabric Support at support@deepfabric.ai or through your account manager.
