Skip to main content

Check out Interactive Visual Stories to gain hands-on experience with the SSE product features. Click here.

Skyhigh Security

Add a Group to the Application in an Okta IdP

Limited Availability: To access SCIM Provisioning, contact Skyhigh Support.

Once the group is created, you must add it to the Skyhigh SSE SCIM-enabled application created in the IdP. Then the group must be pushed to Skyhigh via SCIM.

Once the group is pushed to Skyhigh, it appears on the Settings > User Management > Users and Roles > Users ​​​​​​tab under the Linked Groups column. By default, these synchronized groups follow a Zero Trust model; they are imported without any predefined roles or permissions. A Skyhigh administrator must then manually assign the required access levels to the group to enable user permissions.

Add a Group to the Application in an IdP and Push the Group to Skyhigh

To add a group to the application, perform the following steps:

  1. Log in to the Okta dashboard.
  2. On the Admin Console, select Applications > Applications.

    10- application.png
     
  3. On the Applications page, select the desired application.

    11-select desired app.png
     
  4. On the Assignments tab, select Assign > Assign to Groups.

    12-Assign to groups.png
     
  5. On the Assign to Groups dialog, search for the desired group and click Assign.

    13-Click assign (for groups).png
     
  6. Click Save and Go Back.

    14-Save and Go back.png

     
  7. Click Done.

    15 - done (adding).png

You have successfully assigned a group to the application.

21- Group is aded to the application.png

To push groups to the Skyhigh User Management page, perform the following steps:

  1. On your application, select the Push Groups tab.

    16-Select push group.png
     
  2. Select Push Groups > Find groups by name.

    17- Find groups by name.png
     
  3. In the search field, enter the group name and select it.

    18-search for group name to push.png
     
  4. Click Save.

    19- save the pushed group.png

    20-pushed group status.png

Now, log in to the Skyhigh dashboard, select Settings > User Management > Users and Roles > click the Users tab to view the groups pushed from the IdP.

11-after gropu assignment_in Skyhigh.png

NOTE: After you assign a group to the application and push that group to Skyhigh, any subsequent users added to the group within your Identity Provider are automatically provisioned. These newly added users will automatically appear on the Skyhigh Users and Roles > Users tab, associated with their respective Linked Group.

For details on managing SCIM users and groups in Skyhigh, see Manage SCIM Users in Skyhigh.  

  • Was this article helpful?