Skip to main content

Provisioning groups from Okta using SCIM

Using SCIM you can provision Okta groups in Hyperproof. The users in the Okta group, along with their attributes, are synchronized to Hyperproof. This feature is configured by default.

To access group provisioning:

Note

You must be logged in to Okta as an administrator to access group provisioning.

  1. In Okta, locate the Hyperproof app configured for SSO and open the app settings.

  2. Click the Push Groups tab.

Adding Okta groups for synchronization with Hyperproof

Use the Push Groups tab to add Okta groups to the Hyperproof app. This triggers the synchronization. When group membership is synchronized, keep in mind the following:

  • Always add users to the Hyperproof app in Okta before adding them to an Okta group.

  • If the Okta group being synchronized contains a directory user who hasn't been added to the Hyperproof app, that user isn't included in the Hyperproof group.

  • If you add a user to a group in Okta, that user is added to the group in Hyperproof as long as they are already assigned to the Hyperproof app in Okta.

  • If you remove a user from a group in Okta, that user is removed from the group in Hyperproof as long as they are assigned to the Hyperproof app in Okta.

  • If you rename the group in Okta, the group in Hyperproof is also renamed.

  • If you remove the group from the Push Groups list in Okta the group is archived in Hyperproof.

Note

Group synchronization is asynchronous. It may take a few minutes for group changes to be reflected in Hyperproof.