Skip to main content
Okta SCIM group setup
incident.io Engineering Team avatar
Written by incident.io Engineering Team
Updated over a week ago

For organisations that use a SCIM-based IDP solution, incident.io allows you to manage users and permissions in your IDP provider. Additionally your users and user groups will be synced to the incident.io catalog, making them available for use in workflows and in our on-call product.

To integrate with SCIM, navigate to Settings > Integrations and search for Okta. Click the Connect button in the automatic user provisioning section.

This will launch the SCIM directory sync flow, powered by WorkOS. You can select a provider from the list, or manually enter the details of your own provider if required. In this guide, we'll use Okta but WorkOS provides comprehensive instructions on the next step for all of their supported providers.

Follow the steps to create an app in Okta and take care to ensure your push groups are correctly configured. It's easy to create an app, assign groups to the app and then fail to push groups to the app.

If you require more detailed steps on this setup process, you can consult the WorkOS guides here

  • For Okta, this article

  • For Google, this article

  • For others, search for the relevant provider here

Note: Common issues with Okta push group setup are covered in this guide.

Once you've completed the flow and successfully verified your credentials, your SCIM directory will begin to sync with incident.io. This can take some time.

Once your directory is synced, you'll see the success message:

Clicking Done will return you to the incident.io Settings page and allow you to map your SCIM groups to roles in incident.io. Click Add assignment to map one of your SCIM groups to an incident.io role.

Once you've assigned your SCIM groups to roles, you're ready to click Continue and confirm your selection.

At this point, your incident.io users and groups will be managed via SCIM and you will no longer be able to assign roles manually in the incident.io UI.

In addition, your SCIM groups and assigned users will be visible in the catalog, making them available for use in workflows across the product.

Did this answer your question?