{"id":87578,"date":"2023-06-05T13:10:12","date_gmt":"2023-06-05T17:10:12","guid":{"rendered":"https:\/\/jumpcloud.com\/?post_type=support&p=87578"},"modified":"2024-02-05T19:03:49","modified_gmt":"2024-02-06T00:03:49","slug":"integrate-with-strongdm","status":"publish","type":"support","link":"https:\/\/jumpcloud.com\/support\/integrate-with-strongdm","title":{"rendered":"Integrate with strongDM"},"content":{"rendered":"\n
Give users access to stromDM with a Bookmark Application connector. Automatically provision, update and deprovision users and groups in strongDM from JumpCloud using the Identity Management (SCIM) integration. Leverage this integration to centralize user lifecycle, user identity, and group management in JumpCloud for strongDM. Save time and avoid mistakes, as well as potential security risks, related to manually creating users.<\/p>\n\n\n\n
Read this article to learn how to setup the strongDM integration.<\/p>\n\n\n\n
Prerequisites<\/strong><\/p>\n\n\n\n <\/a>Important Considerations<\/strong><\/p>\n\n\n\n Attribute Considerations<\/strong><\/p>\n\n\n\n If this is a Bookmark Application, enter your sign-in URL in the Bookmark URL<\/strong> field.<\/p>\n <\/div><\/div><\/div><\/div>\n\n\n\n The SSO IdP URL<\/strong> is not editable after the application is created. You will have to delete and recreate the connector if you need to edit this field at a later time.<\/p>\n <\/div><\/div><\/div><\/div>\n\n\n\n The Client ID and Secret (token) may only be shown once. Copy them to a secure location, like the JumpCloud Password Manager<\/a>, for future reference.<\/p>\n <\/div><\/div><\/div><\/div>\n\n\n\n This functionality is helpful if users have already been created in the application but have not been created in JumpCloud.<\/p>\n\n\n\n Tip:<\/strong> Try using the New Users-only filter when selecting users to import. This will move all of your new users to the top of the list, making them easier to identify and select.<\/p><\/div><\/div><\/div>\n\n\n\n Warning:<\/strong> Imported users must be members of a user group bound to an application for JumpCloud to manage their identity in, and access to, the application.<\/p><\/div><\/div><\/div>\n\n\n\n The following Directory Insights (DI) events provide visibility into failures and detailed information about the user and group data being added or updated from HR or other external solutions to JumpCloud.<\/p>\n\n\n\n Customers with no package or the Device Management Package will need to add the Directory Insights \u00e0 la carte option. Directory Insights is included in all other packages<\/a>.<\/p>\n <\/div><\/div><\/div><\/div>\n\n\n\n These DI events will only be present if SCIM Groups are supported.<\/p>\n <\/div><\/div><\/div><\/div>\n\n\n\n The following table lists attributes that JumpCloud sends to the application. See Attribute Considerations<\/a> for more information regarding attribute mapping considerations. <\/p>\n\n\n\n\n
\n
\n
\n
Creating a new JumpCloud Application Integration<\/strong><\/h2>\n\n\n\n
\n
<\/p><\/div>
\n
<\/p><\/div>
\n
\n
Configuring the Identity Management Integration<\/strong><\/h2>\n\n\n\n
To configure strongDM<\/strong><\/h3>\n\n\n\n
\n
<\/p><\/div>
To configure JumpCloud<\/strong><\/h3>\n\n\n\n
\n
\n
Importing Users<\/strong><\/h2>\n\n\n\n
\n
\n
<\/p><\/div>
\n
\n
\n
<\/p><\/div>
SCIM Directory Insights Events<\/strong><\/h2>\n\n\n\n
<\/p><\/div>
SCIM DI Integration Events<\/h3>\n
\n\n
\n \n Event Name <\/th>\n \n Event Description <\/th>\n <\/tr>\n \n \n idm_integration_activate <\/td>\n \n Logged when an IT admin attempts to activated new SCIM Identity Management integration. <\/td>\n <\/tr>\n \n \n idm_integration_update <\/td>\n \n Logged when an IT admin attempts to update a configured and activated SCIM Identity Management integration. <\/td>\n <\/tr>\n \n \n idm_integration_reauth <\/td>\n \n Logged when an IT admin attempts to change the credentials for an activated SCIM Identity Management integration. <\/td>\n <\/tr>\n \n \n idm_integration_delete <\/td>\n \n Logged when an IT admin attempts to deactivate an activated SCIM Identity Management integration. <\/td>\n <\/tr>\n <\/table>\n<\/div><\/div>\n\n\n\n SCIM DI User Events<\/h3>\n
\n\n
\n \n Event Name <\/th>\n \n Event Description <\/th>\n <\/tr>\n \n \n user_create_provision <\/td>\n \n Logged when JumpCloud tries to create a new user in service provider application. <\/td>\n <\/tr>\n \n \n user_update_provision <\/td>\n \n Logged when JumpCloud tries to update an existing user in service provider application. <\/td>\n <\/tr>\n \n \n user_deprovision <\/td>\n \n Logged when JumpCloud tries to change an existing user to inactive in the service provider application. <\/td>\n <\/tr>\n \n \n user_delete_provision <\/td>\n \n Logged when JumpCloud tries to delete an existing user in service provider application. <\/td>\n <\/tr>\n \n \n user_lookup_provision <\/td>\n \n Logged when JumpCloud encounters an issue when trying to lookup a user to determine if the user needs to be created or updated. <\/td>\n <\/tr>\n <\/table>\n<\/div><\/div>\n\n\n\n SCIM DI Group Events<\/strong><\/h3>\n\n\n\n
<\/p><\/div>
\n\n
\n \n Event Name <\/th>\n \n Event Description <\/th>\n <\/tr>\n \n \n group_create_provision <\/td>\n \n Logged when JumpCloud tries to create a new group in service provider application. <\/td>\n <\/tr>\n \n \n group_update_provision <\/td>\n \n Logged when JumpCloud tries to update an existing group in service provider application. <\/td>\n <\/tr>\n \n \n group_delete_provision <\/td>\n \n Logged when JumpCloud tries to delete an existing group in service provider application. <\/td>\n <\/tr>\n <\/table>\n<\/div><\/div>\n\n\n\n Attribute Mappings<\/strong><\/h2>\n\n\n\n