SCIM updates from the IDP are immediately propagated and do not require a full database sync.
Note: SCIM 2.0 is supported and currently only works with the Okta Advanced app from Avigilon Alta Market Place.
Okta Advanced App set up and configure
Go to http://control.openpath.com/login and sign in. To access the European Alta Control Center, go to
http://control.eu.openpath.com/login .Go to App marketplace > Get apps.
Click the Okta Advanced tile.
Click the + Get app Organization button.
Go to App marketplace > My apps.
Click the pencil icon to edit Okta Advanced
In Sync type, select SCIM.
Click the Generate auth token button and copy the token. Click Done.
Manually trigger the first sync in the Okta portal and then refresh the Access groups or Roles page in Alta
Control Center.Enable the following settings, as needed:
Auto-create mobile credential - Creates a mobile credential for every user.
Auto-create cloud key credential - Creates a cloud key credential for every user.
Sync mobile phone numbers - Syncs the mobile phone number for every user. Phone numbers must
use E.164 format with a maximum of 15 digits: +[country code][subscriber number
including area code]Enable single sign-on (SSO) for users with portal access - Allows Okta super admin users to log in to the Avigilon Alta Control Center with their Okta credentials.
Enable single sign-on (SSO) for mobile app - Allows users to log in to the Openpath app using Okta
credentials.
Tip: Consider using the http://control.openpath.com/loginSSO or http://control.eu.openpath.com/loginSSO setup page to prevent users from trying a standard login.
Okta portal configuration
Follow these steps to set up the SCIM integration:
In the left-hand menu, select Applications and then click on Applications item.
Click Create App Integration, choose SAML 2.0, and then click Next to complete the SAML setup workflow.
Go to the General tab, then select SCIM under Provisioning.
Switch to the Provisioning tab and click on Integration.
Enter the following SCIM Connection settings:
SCIM connector base URL: Enter the base URL for your organization (e.g.,
https://yourcompanyname/scim/v2/okta/
).Configure the fields for Unique identifier for users, Import New Users and Profile Updates, Push New Users, Push Profile Updates, and HTTP Header for Authentication Mode.
In the Authorization section, paste the token from the Alta Control Center.
Test the connection configuration and click Save.
Switch back to your Okta Advanced app
Add Comment