Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in
Celebration

Earn badges and make progress

You're on your way to the next level! Join the Kudos program to earn points and save your progress.

Deleted user Avatar
Deleted user

Level 1: Seed

25 / 150 points

Next: Root

Avatar

1 badge earned

Collect

Participate in fun challenges

Challenges come and go, but your rewards stay with you. Do more to earn more!

Challenges
Coins

Gift kudos to your peers

What goes around comes around! Share the love by gifting kudos to your peers.

Recognition
Ribbon

Rise up in the ranks

Keep earning points to reach the top of the leaderboard. It resets every quarter so you always have a chance!

Leaderboard

When I provision accounts in Atlassian Access will users receive email notification?

We have set up our Atlassian Access organization and verified our domain. We will be enabling SAML for our identity provider (Azure). I have a question about the User Provisioning process:

It looks like the provisioning process is a separate process after we have made the SAML connection, correct? We have roughly 20,000 accounts in Azure. Will all of those sync over to our Atlassian Access organization, or will we be able to provision subsets of our users by group or organizational unit? 

I have the same question regarding groups. Will all groups appear in Atlassian Access? We have thousands. Or do we select groups and push them? I see something in the documentation about pushing a group, but the documentation is rather vague. 

I understand that once we have accounts and groups synced, we can provide access to products like Jira Service Desk using the synced groups. Most of our users will be customers only, and about 150 or so users will be licensed for products like Jira, Jira Service Desk, and Confluence. 

Can anyone point me to more comprehensive documentation that can help me get an idea of what to expect? I'm trying to avoid creating a mess or sending a "Welcome to Atlassian" email to 20,000 people.

Thank you,

 

Sean

2 answers

1 accepted

0 votes
Answer accepted
Claudiu Lionte
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
Nov 08, 2018

Hi Sean,

Automatic provisioning of users from Azure AD is not yet supported. It's just been delivered for Okta (another identity provider) and Azure AD is currently under development. Please watch the feature request below to be notified when it's live:

https://jira.atlassian.com/browse/ID-6305

Once it's delivered, you will be able to "push" directories or groups of users.

In the meantime, if you want to proceed with integrating Azure AD before automatic provisioning is delivered, please check the article below, especially the "Just-in-time provisioning with SAML" section in it:

https://confluence.atlassian.com/cloud/saml-single-sign-on-943953302.html

Claudiu

Automatic provisioning of users from Azure AD already exists.

You can confirm if Atlassian sends any mail to the user when it is added by this method.

Thanks

David A.

What is the latest behavior on this? Will all of the users with the claimed domain receive an email that they will now use SAML authentication when accessing their Atlassian products? 

Did you find the answer?

No answer for me. I did learn that there will be an automated message to all of the users once you claim a domain. The notification asks the users to 'connect their account' to the domain that is leading the organization. We still have not completed implementation of SAML. So YES, there will be an automated message. 

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events