SCIM Configuration Guide

Edited

Features

Our SCIM implementation supports the following provisioning features:

  • Create Users

  • Update User Attributes

    • First name

    • Last name

    • Email

    • Timezone

  • Deactivate Users

  • Push Groups

Requirements

  • Your team has an active Fathom Team Edition subscription or trial

  • Okta SCIM integration is not required to be setup in order to use Okta SAML SSO login

Setup

  1. Log into fathom.video (with the correct account under the company you would like to associate with this Okta instance)

  2. Open the Fathom application in Okta

  3. Under the “Sign On” tab, ensure the “Application username format” is set to “Email”

  4. Under the “Provisioning” tab, setup your integration under “Integration”

  5. Connect to Fathom and approve the OAuth 2.0 connection.

  1. Setup data you would like to sync under “To App”. We only support the following options:

    • Create Users

    • Update User Attributes

    • Deactivate Users

  2. We recommend setting up at least “Create Users,” as it is required for Push Groups to properly manage your Fathom Teams

  3. After enabling “Create Users”, you can now assign your users and groups to the Okta application and it will begin syncing them

Optional configuration

If you would like Okta to have control of the Fathom Teams names, under the “Push Groups” tab settings you can disable “Rename groups” (default is enabled). This will allow you to set simpler Fathom Team names when creating a Push Group:

Known issues and troubleshooting

  1. I have been removed from my Team: With SCIM configured, all application users will be assigned only to Fathom Team roles if they are associated to a Push Group. If any assigned user is not in a group that is pushed, they will not be given a team membership.

  2. I cannot edit my Team in Fathom: With SCIM configured, all management aspects of the Fathom Team are given to Okta and you must update your Fathom Teams via Okta Push Groups.