IdP Configuration

SCIM Base URL, OAuth token URL, and API-key credentials on Settings → SCIM.

IdP Configuration is the first section on Settings → SCIM. It shows the details your identity provider needs to provision users into Guard through SCIM with OAuth.

Row

What it is

SCIM Base URL

The SCIM 2.0 endpoint for your identity provider. Copy it with the copy button.

OAuth Token URL

The token endpoint your identity provider calls to get an access token. Copy it with the copy button.

Authentication

How your identity provider authenticates: OAuth 2.0 client credentials from a Guard API key.

This section only displays these details. It does not create the API key.

Connect your identity provider

  1. In Guard, open your User Profile and add an API key in the Add API Key dialog. Choose the SCIM Provisioning role, which can only call SCIM, or the Admin role. Copy the API key ID and secret from API Key Created.
  2. In your identity provider's SCIM app, enter the SCIM Base URL and OAuth Token URL copied from this section.
  3. Choose OAuth 2.0 client credentials. Enter the API key ID as the Client ID and the API key secret as the Client Secret.