Observed discrepancies between IDP (Okta, Azure) to Cloud SWG portal SCIM users
book
Article ID: 376017
calendar_today
Updated On:
Products
WSS add-on - All Traffic Pass-ThroughWSS add-on - Cloud Firewall Service StandardCA Secure Cloud SaaS - Identity ManagementCA Secure Cloud SaaS - Single Sign On
Issue/Introduction
Synchronization issues between IDP (Okta, Azure) to Cloud SWG portal SCIM users, follow the below steps.
Resolution
Okta
Review the application integration in the Okta account for any discrepancies between Okta IdP and Cloud SWG. If errors exist, resolve them in the IdP portal. The
Okta Dashboard > Tasks section displays a summary of sync errors and issues with the application integration. Follow the provided steps to manually fix the issues.
Azure
The initial synchronization can take an average of 15 to 45 minutes before Azure begins to send data to the Cloud SWG. Subsequent synchronizations require less time.
To verify that the Azure IdP users and groups are updated in Cloud SWG, go to the Cloud SWG portal and select Identity > Users & Groups > Third-Party Sync.
If the following issues occur, you do not have to perform any manual updates:
The Third-Party Sync page does not display the correct users and groups.
Azure has unresolved errors due to Cloud SWG attempting a sync during the migration downtime.
Azure automatically re-synchronizes any missed or pending changes within the 15-minute to 45-minute window