Okta SCIM provisioning is a paid feature.If you’re using Infisical Cloud, then it’s available under the Enterprise Tier. If you’re self-hosting Infisical,
then you should contact sales@infisical.com to purchase an enterprise license to use it.
1
Create a SCIM token in Infisical
In Infisical, head to SSO & Provisioning and select the Provisioning tab. Under SCIM Provisioning,
turn on the Enable SCIM toggle to allow Okta to provision and deprovision users and user groups for your organization.
Next, select Configure on the SCIM Provisioning card, then select Create Token in the Manage SCIM Credentials modal to generate a SCIM token for Okta.
Next, copy the SCIM URL and New SCIM Token to use when configuring SCIM in Okta.
Next, select Configure on the SCIM Provisioning card, then select Create Token in the Manage SCIM Credentials modal to generate a SCIM token for Okta.
Next, copy the SCIM URL and New SCIM Token to use when configuring SCIM in Okta.
2
Configure SCIM in Okta
In Okta, head to your Application > General > App Settings. Next, select Edit and check the box
labeled Enable SCIM provisioning.
Next, head to Provisioning > Integration and set the following SCIM connection fields:
Next, press Test Connector Configuration to check that SCIM is configured properly.
Next, head to Provisioning > To App and check the boxes labeled Enable for Create Users, Update User Attributes, and Deactivate Users.
Now Okta can provision/deprovision users and user groups to/from your organization in Infisical.
Next, head to Provisioning > Integration and set the following SCIM connection fields:- SCIM connector base URL: Input the SCIM URL from Step 1.
-
Unique identifier field for users: Input
email. - Supported provisioning actions: Select Push New Users, Push Profile Updates, and Push Groups.
-
Authentication Mode:
HTTP Header.
Next, press Test Connector Configuration to check that SCIM is configured properly.
Next, head to Provisioning > To App and check the boxes labeled Enable for Create Users, Update User Attributes, and Deactivate Users.
Now Okta can provision/deprovision users and user groups to/from your organization in Infisical.