Streamline user provisioning with the SCIM Module, a secure solution for managing user accounts and groups through your identity provider. Automatically create, update, deactivate, and delete users, synchronize groups and memberships, and keep onboarding and offboarding consistent across HumHub and your central directory.
Key Features:
- User Lifecycle Management: Automatically create, update, deactivate, and delete HumHub users through your identity provider.
- Group Synchronization: Provision HumHub groups and keep group memberships up to date.
- Multiple Identity Providers: Connect multiple identity providers to one HumHub installation, each with its own endpoint, bearer token, and attribute mapping.
- Provider Presets: Quickly configure Microsoft Entra ID, Okta, OneLogin, or Google Workspace, or use the generic preset for Workday and other SCIM-capable providers.
- Attribute Mapping: Map any HumHub profile field to a SCIM attribute for each identity provider without custom code.
- Existing User Migration: Link existing HumHub users by email when migrating from LDAP or manually managed accounts.
- Standards Compliance: Support SCIM 2.0 features such as user and group provisioning, bulk operations, filtering, ETag concurrency, and discovery through an implementation of RFC 7643 and RFC 7644 that passes the Microsoft Entra SCIM Validator.
- Secure Access: Protect each connection with a bearer token that is hashed at rest and rotatable, and optionally restrict access to specific authentication clients.