Set up SCIM (ARIS Advanced)
SCIM stands for System for Cross-domain Identity Management (SCIM) and is designed to facilitate the management of user identities in cloud-based applications and services.
ARIS supports SCIM 2.0.
ARIS supports the service provider-initiated SAML-based SSO. ARIS does not support the identity provider initiated SAML based SSO for public cloud.
In ARIS Advanced edition, the user limit is set to 200. Only 200 users are allowed to provision in ARIS Advanced edition.
Open ARIS Advanced.
Click
Application launcher >
Administration.
Click Configuration management.
Click Identity management.
Select Enable Identity management system (SCIM).
Copy the SCIM endpoint URL value and hand over the SAML endpoint URL to your identity provider for provisioning.
Hand over the preconfigured value of the SCIM endpoint URL and provide it together with the bearer token to your IdP Administrator.
Optional: Enable/Disable the e-mail notification for user creation. That means that if a user is created on the SCIM server side, each newly created user receives an e-mail about the creation.
Click
Save.Copy the endpoint URL and hand over the endpoint URL to your identity provider for provisioning.
You can specify user defined attributes for SCIM. You can specify attributes for users and user groups.
Click
Application launcher >
Administration.
Click Configuration management.
Click Identity management.
Scroll down to User attributes.
Next to the Number of SCIM schema extensions configured field, click
Add. The dialog opens.
Enter a name for the schema.
Click Select file. The dialog opens.
Navigate to the JSON file that contains the SCIM schema extensions for user attributes.
Click Open.
Click Add. The SCIM schema extension file is validated and imported if valid.
You have specified user defined attributes in SCIM.
You can update the user defined attributes in SCIM.
Click
Application launcher >
Administration.
Click Configuration management.
Click Identity management.
Scroll down to User attributes.
Next to the user attributes you want to update, click
Upload. The dialog opens.Click Choose file. The dialog opens.
Navigate to the JSON file that contains the updated SCIM schema extensions for user attributes.
Click Open. The SCIM schema extension file is validated and imported if valid.
You have updated the user defined attributes in SCIM.
You can download the SCIM schema extension file that contains the user defined attributes.
Click
Application launcher >
Administration.
Click Configuration management.
Click Identity management.
Scroll down to User attributes.
Next to the user attributes you want to update, click
Download.
You have downloaded the SCIM schema extension file that contains the user defined attributes.
You can delete user defined attributes.
Click
Application launcher >
Administration.
Click Configuration management.
Click Identity management.
Scroll down to User attributes.
Next to the user attributes you want to update, click
Delete
You have deleted the user defined attributes in SCIM.
Click
Application launcher >
Administration.
Click Configuration management.
Click Identity management.
Click
Generate bearer token. ARIS with SCIM is set up.Click
Back.Copy the SCIM endpoint URL and SCIM bearer token and hand over both values to your identity provider for provisioning.
If you want to use single sign-on, use SAML 2.0.