How to Set Up SCIM with Microsoft Entra

    This guide outlines how to set up SCIM (System for Cross-domain Identity Management) provisioning using Microsoft Entra. You’ll learn how to create a new application, configure SCIM settings, map user attributes, and delete an application if required. Screenshots are included throughout to guide your setup.

    Step 1: Create a New Application in Microsoft Entra

    1. Log in to entra.microsoft.com.
    2. In the left-hand menu, select Enterprise Applications.

      9761da5a-0214-47bc-8b1a-b68c2f1e7f09.png
    3. Click + New application.

      2e9b1217-5f37-4b37-a16c-ed143ed58b80.png

    4. Click Create your own application. 01bd9873-8406-4504-aa45-efb11d5edff9 (1).png
    5. Name the application and click Create.39f19a00-54d4-4406-a63d-f98c31a89189 (1).png
    6. The new application will now appear in your application list.d4ff08e4-e0e2-431a-b930-4785322ad11c (1).png
    7. Click the application name to begin configuration.1f5df3c2-0a53-43e2-97c2-d711b1f62741.png

    Step 2: Configure SCIM Provisioning

    1. Click Provisioning from the app navigation panel.b15ade73-5c32-4ed7-bde9-5a5f51d1d519.png
    2. Click Connectivity.db13d611-6c1f-4b50-9da1-c0402f0c7757 (1).png
    3. Enter the SCIM URL and API key provided by JL, then click Save. 0d236b37-914e-47fa-93c2-9d852907043b.png

      After the API key is pasted, click on Test connection and get a success message before the Save button is available.

    Step 3: Provision a User On Demand

    1. Click Provision on Demand from the left menu.3083cbc1-00b5-43c1-a00b-0ea93abad715.png
    2. Search for a user, then click Provision.
      Confirm that provisioning was successful.69224513-5ea9-4f38-9463-d0af63eee7c0.png

    Step 4: Add or Modify Attribute Mappings

    The below steps will walk you through and example and what should be added in to the relevant fields.

    1. Click Attribute Mapping, then select Provision Microsoft Entra ID Users. 71e8c9f6-928e-4a13-9331-b39f98d63407.png
    2. Scroll to the bottom and tick Show advanced options, then click Edit attribute list for customappsso.

      9cad433b-4e6a-49e2-bbb5-78398dc96c91.png
    3. Scroll to the bottom of the attribute list and add the following:
      • urn:ietf:params:scim:schemas:extension:UserExtension:2.0:User:organisationKey
      • urn:ietf:params:scim:schemas:extension:UserExtension:2.0:User:defaultSalesChannelKey
    4. Check the boxes for:
      • emails[type eq "work"].value
      • displayName
      • User:organisationKey (as listed above)67b6e15a-7e0f-4b7d-95ea-caa629595b64.png
    5. Click Save.
    6. Click Add New Mapping.

    Step 5: Set Mapping Type for Custom Attributes

    1. For each added attribute, change Mapping Type to Constant, and set the value (e.g., internal or companyName).
      The value must be a valid organisation key in JL.
    2. Click OK.
    3. Repeat for defaultSalesChannelKey.

    Step 6: Delete an Application (If Needed)

    1. Go to Enterprise Applications, select the target app.76a24503-35ba-4334-b1f4-11c80671fadf.png
    2. Click Properties
    3. Click Delete.
    4. Confirm by clicking Yes.

       

    The application should now be removed from the list.

     

     

    Was this article helpful?
    0 out of 0 found this helpful