Azure AD user and group provisioning to Infor CloudSuite
We recommend that you use the SCIM feature to provision users.
- Log on to the Infor CloudSuite tenant portal with an administrator account.
- Click the profile icon and select .
- Navigate to .
- Clear the Send email to new users automatically when they are added check box in the section. Click .
- Navigate to Enable SCIM service check box and click . Refresh the page in the browser and navigate to the in the section. . Select the
- Copy the SCIM v2 Service URL for use later in the procedure. Click the plus (+) icon to add a new SCIM account for use later in the procedure. In the section, specify a password for the SCIM account following the stated guidelines. Confirm the password and click to generate the SCIM User Identifier. Click on the warning message.
- Note the User Identifier and password for the SCIM account for later use. Expand the User Identifier column to see the full value.
- Access the Azure portal with an administrator account and select the Infor CloudSuite application created during the federation process. Select .
- Click . Select .
- Specify the Tenant URL. This is the SCIM v2 Service URL previously saved.
-
Generate a Secret Token from the
SCIM account details. To generate the token, use a base 64 encoding website and
encode the User Identifier and
SCIM Password separated by a
colon. For example:
DEVGDENA010_DEM#30b54c31-2edb-4638-a30a-588b1962c47c:Infor2022!
- Specify the Secret Token generated from the previous step.
- Click to validate your details. Click .
- Expand Provision Azure Active Directory Users. Change the Source attribute of the userName attribute to the Email Address attribute. Click and . The userName attribute should match the Unique User Identifier attribute used in the single sign-on section. and select
- Navigate to the Provisioning section. Under , set the Provisioning Status to On. Click . Click the X icon to close the section.
- Select the Clear current state and restart synchronization check box. Click . This triggers SCIM publishing right away instead of waiting for the next scheduled sync. When prompted to confirm the Restart Synchronization, click .
- Click Current cycle status. Click to see details if errors occur. The provisioning interval in Azure AD is 40 minutes. Click to start the sync. Click Provision on demand to publish a single user for testing purposes. to update the
- Validate that the users and groups from Azure AD have been published to Infor CloudSuite. Verify users by navigating to . Verify groups by navigating to . SCIM groups can now have security roles assigned to them to automate security role assignment based on group membership. User and group provisioning via SCIM is now complete.