Azure AD Automatic User Provisioning

固定された投稿 注目の投稿 完了

コメント

37件のコメント

  • 正式なコメント
    Avatar
    Douglas Freeman

    Hello all, you requested and development listened!
    I am happy to announce that SCIM provisioning is now available and supported for Azure! 

    You can find the documentation on how to utilize SCIM provisioning here!!

    Note:

    If you go to enable SCIM provisioning and it is not available please note that we are incrementally releasing this across the platform so you may see it in a few days if you do not see it right now!

    If you have additional questions feel free to submit a support request by emailing support.knowbe4.com 

    Or give us a call: 

    Phone support is available weekdays from 6 a.m.-9 p.m. (Eastern)

    コメントアクション Permalink
  • Avatar
    Nick Romero

    This does not address what the original poster requested. This new feature only helps in cases where customers are hosting AD Services in Azure and not on-prem. 

     

    The poster is requesting that you implement built-in support for Azure provisioning and SSO as mentioned in this article - https://docs.microsoft.com/en-us/azure/active-directory/active-directory-saas-app-provisioning%C2%A0. This eliminates the need to stand up a new server and/or to install anything at all in the customer's environment. Just a few clicks and everything is setup.

     

    All the big players have started doing this. 

    12
    コメントアクション Permalink
  • Avatar
    Forester, Jason

    We would also like to request this functionality.  Being able to utilize the built-in Azure AD SCIM provisioning is the ideal solution over having to install an AD Connector application whether it's on-prem or in a hosted environment.

    7
    コメントアクション Permalink
  • Avatar
    Jerome Liwanag

    Hi KB4 Team!

    1. Can we mark this Incomplete or Pending or anything other than Completed? The request is different from the solution that was posted.

    2. I want to up-vote this request, times are changing and Azure AD and other IDP tools are coming in fast... I'm sure you know the competitors have it and it is a factor to consider during the decision making.

    Hopefully we can get an ETA soon!

    Thanks,

    jerome

     

    4
    コメントアクション Permalink
  • Avatar
    Justin Johnson

    This was marked as Completed but in reality it is not. Can that status be changed so we know it is still being worked on? Thanks. 

    4
    コメントアクション Permalink
  • Avatar
    Ryan Robinson

    Would just like to add a +1 for this, currently trailing the product and has put a real downer on the trial of an otherwise excellent product

    3
    コメントアクション Permalink
  • Avatar
    Travis Springer

    This is crucial for us. The majority of our clients are starting to manage primarily through Azure AD, not on-prem AD. Having to manually manage the users for dozens of companies is very labor intensive.

    2
    コメントアクション Permalink
  • Avatar
    Shaun Boddez

    As a cloud-forward business using Azure AD for identity management rather than on-prem AD, having SCIM provisioning available is very important for us. Currently I need to manually provision and deprovision on every change to our workforce, and this adds a significant workload. Setting up Azure AD Domain Services just to allow automatic provisioning with KnowBe4 is a cost we cannot take on.

    2
    コメントアクション Permalink
  • Avatar
    Matt Collier

    Also adding my voice for this request.  It takes a huge burden out of user management by having a standardized method (SCIM) for importing users via a cloud service.  I've had to create three separate connectors for the domains under management and I spend way more time than I should just making sure its accurate.

    2
    コメントアクション Permalink
  • Avatar
    Leonardo Gonzalez

    Hi KnowBe4 Team,

     

    Just new to the platform. Was starting the setup and couldn't find the SCIM settings.

    Am I reading it correctly? (Almost) October 2020 and you're still not supporting SCIM with Azure AD?

    Can you please provide the date when it will be available?

    Thanks

    2
    コメントアクション Permalink
  • Avatar
    Caleb Albers

    I want to add my support for needing a proper SCIM provisioning integration as well. Legacy (on-prem) Active Directory is a dying technology, and requiring Azure ADDS is not a valid work-around, especially for more modern enterprises leveraging Okta and other SaaS identity providers.

    Having a proper SCIM provisioning API would unlock potential for KB4 customers using pretty much any modern identity provider (including Azure AD natively).

    2
    コメントアクション Permalink
  • Avatar
    Douglas Freeman

    Hello Justin and Jerome! 

    I've changed the status of the post to Answered and not Completed so that we can continue to follow the upvotes associated. I'll also get your requests over to the dev department so that they know that this is a factor when choosing a training/ phishing platform. 

    I'm positive that our Dev team is always looking for ways to make user provisioning better for our customer base and full provisioning via Azure AD would be a great feature! 

    Thank you all for contributing and upvoting this popular post! 

    1
    コメントアクション Permalink
  • Avatar
    Justin Rundell

    +1.  Another upvote for the ability to sync users from Azure AD to KnowBe4.

    1
    コメントアクション Permalink
  • Avatar
    Jason Freeman

    We need this, too. We are trying to reduce reliance on Active Directory as we slowly migrate to Azure AD. KnowBe4 is one of the few services we have that still don't allow direct user provisioning (and changes/deletions) from Azure AD.

    1
    コメントアクション Permalink
  • Avatar
    Aaron Idunate

    Hello,

    I would also like to note that my company is interested in this feature as well.

    Thank you.

    1
    コメントアクション Permalink
  • Avatar
    Charles Rube

    We are also unifying our directory solely on the cloud, so would like to be able to sync KB4 users directly from AzureAD or other SCIM

    1
    コメントアクション Permalink
  • Avatar
    Matthew Eibensteiner

    I just wanted to add my support for this feature request.

    We have 2 AD domains in 2 separate forests. We currently use the KnowBe4 ADISync tool for one domain and the CSV import for the other.

    Originally,  we tried getting the ADISync tool to work with both domains, but it appeared to be a limitation.

    I believe adding the user provisioning via Azure AD sync would resolve this issue for us as well.

    1
    コメントアクション Permalink
  • Avatar
    Lauren Ashley

    Great news! You now have the capability to use our Active Directory Integration (ADI) with Azure Active Directory Domain Services! 

    You can sync your Azure Active Directory users and groups to your KnowBe4 console! See our ADI and Azure AD Domain Services article for more information. 

    0
    コメントアクション Permalink
  • Avatar
    Douglas Freeman

    Thank you Ryan! 

    We appreciate your contribution to the community board! I've submitted your additional information to our development team! 

    0
    コメントアクション Permalink
  • Avatar
    Alex Lush

    As a new customer I've spent a while trying to work out how best to sync our AAD users. It seems this isn't available!

    Sure I can sync the local AD but we don't have all out users in the local AD, some are cloud only. The same as Matthew above, we also have multiple AD domains (both synced to the same AAD directory). The one thing all our various group companies are converging on is the use of AAD as an authentication and user management service.

    For us it would make perfect sense to allow direct sync with AAD. Please make this happen KnowBe4. Thanks. 

    0
    コメントアクション Permalink
  • Avatar
    Kyle Copley

    +1 to this. It is not a valid workaround to require an entire legacy AD server to replicate the AzureAD directory via ADDS, to use the provided connector.  It would be greatly beneficial to have a direct AzureAD sync or a SCIM provisioning API.  Thank you!

    0
    コメントアクション Permalink
  • Avatar
    Alex Scoble

    Any idea when Jumpcloud will be supported? We don't use Active Directory.

    0
    コメントアクション Permalink
  • Avatar
    Walter Nelson

    Hi Alex,

    Thanks for posting. I do not have any insight into if they are planning to support Jumpcloud but I do know that it has been requested before. I have gone ahead and added a feature request for this on your behalf as well so that our development team can see that it is definitely something that is being wanted.

    0
    コメントアクション Permalink
  • Avatar
    Ilya Kaplan

    Hi,  +1 for Azure AD integration and auto provisioning. 

    0
    コメントアクション Permalink
  • Avatar
    Walter Nelson

    Hi Ilya,

    Thanks for your interest in this feature. I got you added as a +1 on it!

    0
    コメントアクション Permalink
  • Avatar
    Mark Button

    Plus one for this feature request, please. I work with over a dozen companies that could take advantage of auto provision of users via SKIM directly from AzureAD. 

    0
    コメントアクション Permalink
  • Avatar
    Lauren Ashley

    Hi Nick! 

    Thank you for the clarification toward the original post, and in your own request. I've submitted your request directly to our Product and Development teams for review. While I can’t provide a timeline or guarantee that this feature request will be implemented, we certainly take customer feedback into consideration when planning future developments. 

    Thanks again!

    Lauren
    KnowBe4

    -1
    コメントアクション Permalink
  • Avatar
    Douglas Freeman

    Thank you for letting us know Travis

    I'll send another request over to our development team on this item so that they are aware that this is something you need! 

    We appreciate the contribution to the community board! 

    -1
    コメントアクション Permalink
  • Avatar
    Douglas Freeman

    Thank you for that input Shaun! 

    I've submitted a request to our development team for your item as well! 

    We appreciate the feedback it lets us know exactly what our customers want in the platform! 

    -1
    コメントアクション Permalink
  • Avatar
    Douglas Freeman (編集済み )

    Hey Aaron/ Matt, 

    Thank you for the input I've created a request on your behalf so our development team knows that this is being requested!

     

    -1
    コメントアクション Permalink

サインインしてコメントを残してください。