Articles in this section

OneLogin SCIM Connection Overview

Setting up OneLogin SCIM provisioning with Spekit? This guide provides a general overview of what the SSO connection process involves.

⚠️ Important: This guide provides a general overview of the SSO connection process and should not be used as a step-by-step configuration guide. To set up SSO with Spekit, go to the Connect page within your Spekit Web App and proceed through the in-app setup walkthrough.

 

📌 Quick-Jump Topics

 

Step 1: Create a OneLogin Application

How do I create the Spekit SCIM application in OneLogin?

  1. Log in to the OneLogin admin dashboard.
  2. Select the Applications tab at the top of the page.
  3. Click Add App.

Select Add App in the OneLogin dashboard

  1. In the search field, type SCIM and select the application named SCIM Provisioner with SAML (SCIM V2 Enterprise).

Search for SCIM Provisioner with SAML in OneLogin

  1. Give the application a descriptive Display Name such as Spekit SCIM.
  2. Click Save.

Enter application name in OneLogin

 

Step 2: Configure OneLogin SCIM

How do I configure the SCIM application to connect with Spekit?

Configure the API credentials:

  1. Within the SCIM application you just created, click the Configuration tab on the left.
  2. Copy and paste the API credentials from your Spekit in-app walkthrough into the corresponding fields.

Configuration tab showing SCIM Base URL in OneLogin

Enable provisioning:

  1. Click the Provisioning tab on the left.
  2. Ensure both dropdowns are set to Suspend.
  3. Check the Enable provisioning box.
  4. Click Save.

Enable Provisioning checkbox in OneLogin

Configure group parameters:

  1. Click the Parameters tab on the left.
  2. Click Groups.

Parameters tab showing Groups section in OneLogin

  1. In the modal that appears, check the box next to Include in User Provisioning.
  2. Click Save.

Include in User Provisioning checkbox in OneLogin

 

Step 3: Assign Users to Your Spekit SCIM Application

How do I assign individual users to the Spekit SCIM application?

Users and groups must be assigned to the Spekit SCIM application in OneLogin before they can be synced into Spekit.

  1. Select Users from the top navigation menu.
  2. Find the user you want to provision to the SCIM app and open their profile.
  3. Click the Applications tab on the left within the user profile.
  4. Click the + (plus) symbol to add an application.

Adding users to an application in OneLogin

  1. Select the Spekit SCIM application from the list and click Continue.

Selecting the application to assign to a user in OneLogin

  1. Click Save in the confirmation modal to apply the change.

Save confirmation in OneLogin

 

Step 4: Assign Groups to Spekit

How do I sync groups into Spekit via OneLogin roles?

ℹ️ Note: There are multiple ways to provision groups in OneLogin. The method below is one approach that Spekit recommends, but other methods can also be used.

Create a new Role:

  1. In the top navigation, select Users and then click Roles from the dropdown.
  2. Click New Role.

Select New Role in OneLogin

  1. Give the Role a name — this will become the name of the group in Spekit.
  2. Select the appropriate SCIM application.
  3. Click Save.

Input role name for new group in OneLogin

Add users to the Role:

  1. Click the Users tab within the Role.
  2. Search for the users you want to assign to this role and click Add To Role.
  3. Click Save.

Add users to role in OneLogin

  1. Click Save in the confirmation modal.

Save confirmation when adding users to a role in OneLogin

Create a Rule to map the Role to a Spekit group:

  1. Navigate back to your Spekit SCIM application.
  2. Click the Rules tab on the left.
  3. Click Add Rule.

Add Rule in the Rules tab in OneLogin

  1. Give the Rule a descriptive name.
  2. Under Actions, select Set Groups in Spekit SCIM.
  3. Set the condition to For each role with value that matches [your-role-name].
  4. Click Save.

New Mapping modal showing rule name input in OneLogin

Confirm pending user updates:

  1. Within your SCIM app, click the Users tab.
  2. If any users show a Pending status, click on the notification to review and confirm the update.

Pending user notifications in OneLogin SCIM app

 

Was this article helpful?
0 out of 0 found this helpful