Directories & identity providers

ProtocolStandard

SCIM 2.0

Nova's SCIM 2.0 connector provisions any cloud application that exposes a standard SCIM interface, with no need for a dedicated connector per system.

Capabilities

What Nova does with SCIM 2.0

  • Account creation

    Creates user accounts in the target application and removes them on offboarding.

  • Groups via PatchOp

    Assigns and removes group memberships via SCIM PatchOp operations; removing a membership that is already gone is tolerated.

  • Active flag and passwords

    Activates and deactivates accounts via the active flag and sets passwords where the target application supports it.

  • Checks in recertification

    Checks during recertification whether accounts actually exist and are active in the target application.

  • Group import

    Imports the target application's existing groups as entitlements into the Nova catalog through a background job.

  • Attributes and sign-ins

    Updates user attributes via PatchOp; the last logon can be read from a configurable attribute, since the SCIM standard does not define one.

Technology and process

Integration and identity lifecycle

Technical integration

Nova acts as a SCIM client against the /scim/v2 endpoint under a configurable base URL, authenticating with a bearer token, basic auth, or no authentication. SCIM is also the documented route to cloud-hosted SAP systems, for example via SAP Cloud Identity Services (IPS).

In the identity lifecycle

Accounts in the target application follow the lifecycle in Nova: joiners are created, leavers are deactivated via the active flag. Approved requests are provisioned as group memberships, and recertification checks account existence and status directly in the application.

More in the catalog

Related integrations

All product names, logos and brands mentioned are property of their respective owners. They are referenced solely to describe compatibility and do not imply any partnership or endorsement.

Next step

Ask your questions live on the system.

30 minutes via video call on the demo system: you name your use cases, we show the relevant functions.

Request a demo

What happens next

  1. ReplyWe usually get back to you on the same working day and agree a date with you.
  2. PreparationWe prepare the demo around the topics you name.
  3. 30 minutes via video callLive on the demo system with fictitious data: you ask, we show the relevant views.