Observed discrepancies between IDP (Okta, Azure) to Cloud SWG portal SCIM users
search cancel

Observed discrepancies between IDP (Okta, Azure) to Cloud SWG portal SCIM users

book

Article ID: 376017

calendar_today

Updated On:

Products

WSS add-on - All Traffic Pass-Through WSS add-on - Cloud Firewall Service Standard CA Secure Cloud SaaS - Identity Management CA Secure Cloud SaaS - Single Sign On

Issue/Introduction

Synchronization issues between IDP (Okta, Azure) to Cloud SWG portal SCIM users, follow the below steps.

Resolution

Okta

Review the application integration in the Okta account for any discrepancies between Okta IdP and Cloud SWG.  If errors exist, resolve them in the IdP portal. The 
Okta Dashboard > Tasks section displays a summary of sync errors and issues with the application integration. Follow the provided steps to manually fix the issues.


Azure

The initial synchronization can take an average of 15 to 45 minutes before Azure begins to send data to the Cloud SWG. Subsequent synchronizations require less time.
To verify that the Azure IdP users and groups are updated in Cloud SWG, go to the Cloud SWG  portal and select Identity > Users & Groups > Third-Party Sync.
If the following issues occur, you do not have to perform any manual updates:
  • The Third-Party Sync page does not display the correct users and groups.
  • Azure has unresolved errors due to Cloud SWG attempting a sync during the migration downtime.
    Azure automatically re-synchronizes any missed or pending changes within the 15-minute to 45-minute window