Public Documentation

Lawie Docs

security-noteDifficulty: beginnerTime: 15mVersion: v1Reviewed: 2026-07-14Reviewer: Identity ownerTags: help, admin-security, identity

Configure SCIM Provisioning

Automate user lifecycle provisioning and deprovisioning from identity provider.

Overview

Automate user lifecycle provisioning and deprovisioning from identity provider.

Audience

  • Admin
  • It Security

Product Area

Identity

Prerequisites

  • SSO enabled

Steps

  1. Create SCIM token

Generate scoped SCIM credential and register in IdP provisioning app.

  1. Map attributes

Map role, department, and manager attributes to Lawie fields.

Expected Result

The Identity workflow completes without unresolved validation errors, and the result is visible to the intended roles.

Security and Audit Notes

  • Use the least-privileged role that can complete the task.
  • Confirm the resulting change or decision appears in the workspace audit trail when the workflow changes customer data or access.

Limits and Preconditions

  • Available controls depend on the tenant plan, enabled modules, jurisdiction, and administrator policy.
  • If a named control is not visible, confirm entitlement and role access before treating the behavior as a product failure.

Troubleshooting

  • Role mapping absent: Add explicit role mapping to avoid default over-privileged role.

Related Articles

Escalation

If the documented result cannot be reached after the checks above, capture the workspace identifier, affected product area, timestamp, and a redacted error message, then use Support. Never include secrets, privileged legal content, or customer documents in the initial report.