Forum Discussion

krisimmiglpr-itde's avatar
krisimmiglpr-itde
Copper Contributor
Mar 06, 2024

Adding SCIM provisioning to internal business application

Hello,

I am trying to add SCIM provisioning to our internal web-app that uses SSO with MS Entra ID. When I go to the "Provisioning" section of the app in the Entra Admin Panel I only get the notification, that the needs to be registered as an app in the Application Gallery. It seems I have to publish the app publicly to the MS Entra ID Application gallery to even start configuring it for SCIM. Is that the only way? I don't want the app to be public, it is just an internally used web-app for our business. Is there a non-public way of doing this? Any help would be greatly appreciated.

 

3 Replies

  • tlakshmanan's avatar
    tlakshmanan
    Copper Contributor
    Based on the Microsoft documentation, automating provisioning to an application necessitates the construction and integration of a SCIM endpoint accessible by the Microsoft Entra provisioning service.

    Therefore, your SCIM endpoint must be publicly accessible for Entra ID to communicate with your custom application for user provisioning.
    • krisimmiglpr-itde's avatar
      krisimmiglpr-itde
      Copper Contributor

      Himkg310 , I was just referencing the documentation here: https://learn.microsoft.com/en-us/entra/identity/app-provisioning/use-scim-to-provision-users-and-groups

       

      In step 5. it says to publish the app but it is marked "optional". When I try to set the SCIM settings in my app I get this screen though:

      As you can see, it does not let me edit the SCIM details for my app. I am not sure if I am on the right screen or if I have maybe created the wrong type of application in the first place.

      ā€ƒ

Resources