Prerequisites
| Limited Availability: To access SCIM Provisioning, contact Skyhigh Support. |
Before proceeding to the SCIM integration, make sure the following prerequisites are met:
- You must configure SAML and SSO for Skyhigh Cloud Administrators. For details, see Configure SAML and SSO for Skyhigh Cloud Administrators.
- API credentials must be handy to integrate Skyhigh with IdP and to avail SCIM capability. To generate API credentials, see Generate API Credentials.
Points to Remember
- The SCIM integration will not affect the existing RBAC settings and workflow.
- Primary User. Designate the tenant's Primary User account as your SSO-exempt emergency (break-glass) account. SCIM integration intentionally bypasses this account, ensuring its existing Role-Based Access Control (RBAC) settings remain unaffected. Securely store these credentials to maintain access during an Identity Provider outage.
NOTE: The Users and Roles page does not display linked group and role assignments for the Primary User, and administrators cannot configure these assignments via SCIM.
