Hi,
This issue is quite tricky, so I'll try to keep it short and to the point.
The client's identity provider is Keycloak, which isn't compatible with SCIM. However, user approbation can be automated and SAML-SSO is ok, which is great.
I'm trying to find a way to automatically add the newly self-added-user to a group.
The only thing I can think of is "sending a custom SAML attribute to Atlassian Access containing the user's group from Keycloak", then "somehow retrieve said attribute and add user to the right group, maybe with some ScriptRunner?".
Trouble is, I'm not even sure it's possible, or if there could be a better way to do things.
From what I said: are you inspired with a solution ?
Thank you very much in advance for any kind of help,
Dylan
Hi @ADyPo
You can use miniOrange SCIM App for automating the group permissions from Keycloak. The app provides support to use Keycloak to sync users and groups.
You can try out the plugin from Atlassian Marketplace by clicking here and you can refer to this documentation to set up: https://miniorange.com/atlassian/jira-cloud-user-provisioning-for-keycloak/.
You can also reach out to us for a demo and support by clicking here: https://miniorange.atlassian.net/servicedesk/customer/portal/2
ps: I work for miniOrange, one of the top SSO vendors in Atlassian Marketplace.
Thanks,
Ashwini
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.