The Atlassian Community Forums are currently in read-only mode. We will be relaunching on a new platform on September 22 (read more here). We apologize for the extended downtime. For concerns or questions, please email communitymanagers@atlassian.com. See you on the other side, on the new Atlassian Community Forums! :)

×

Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

User Provisioning with SCIM on existing SAML account/users

Martin Søstrand Helgesen
Contributor
October 11, 2020

I am considering to use SCIM to provision users  from our Azure Active Directory. 

But what happens with the existing users? We have set up SAML SSO already and lots of users are already created.

What happens if SCIM is set up and  user@corporate.com is added to a azuread group and is set for provisioning to Atlassian, but user@corporate.com already exists in Atlassian as a managed account? 

1 answer

Comments for this post are closed

Community moderators have prevented the ability to post new answers.

1 vote
Narmada Jayasankar
Atlassian Team
Atlassian Team members are employees working across the company in a wide variety of roles.
October 12, 2020

Hi Martin,

You should not have any problems with the scenario you have described. Please see the following section from the Atlassian Access user provisioning documentation

 

If your Atlassian organization already has existing users:

  • And the identity provider has a user with the same email address as a user in your organization, we'll create a link between both user accounts. Going forward, you can only make changes to the user's account from your identity provider.
  • And the identity provider doesn't have a user with the same email address as a user in your organzation, the user's access remains the same and you can still manage that user from your Atlassian organization.

 

Thanks,

Narmada Jayasankar

Lead Product Manager

Atlassian Access

DEPLOYMENT TYPE
CLOUD
TAGS
AUG Leaders

Atlassian Community Events