1. Before starting to configure SCIM you have to contact email@example.com to have it enabled for your organisation. If you follow steps 1-3 and are able to see SCIM token -- it is already enabled for you.
2. To configure Looop/Okta SCIM integration, you need to have an Admin account on Looop and an Admin account on Okta.
1. Log in as organisation administrator.
2. Go to Account > Provisioning page and find the SCIM Integration section:
3. Above your token, you’ll find a SCIM base URL
4. Go to Okta UI and find the Looop application you set up for SAML authentication
5. Open configurations settings
6.Select “Provisioning” tab:
7. Select the “Integration” section on the left sidebar and set up your SCIM endpoint and token there:
Keep in mind that the Url should always end with “/scim/v2”.
8. Click “Edit” and configure settings as on following screenshot:
9. Configure mapped attributes for users as follows (you can request additional attributes from us if required, also you can use anything that is part of default SCIM schema, this is minimum set to have working integration with Looop):
10. Click “Test API credentials” and make sure the success message appears.
11. Select “Push Groups” section on top. The list of available groups will appear, and you can select “Activate group push” in “Push Status” column for groups you want to be synced.
NOTE: This only defines if the information about the group itself and its memberships will be made available to Looop. Users who will be synced, even if based on group memberships are chosen in different section.
12. You can configure what users will be synced with Looop by selecting “Assignments” section on top, it’s shared between SSO and Provisioning config, so should already be set up.
You can add extra attributes. On top of the SCIM spec attributes defined here https://datatracker.ietf.org/doc/html/rfc7643#section-4.1.1
Looop supports these two namespaces and these fields:
To add these attributes, put namespace into and field for example like this for manager: