<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>idea Access Management based on SCIM v2 interface for Portal in ArcGIS Enterprise Ideas</title>
    <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idi-p/934792</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We need a Access Management interface, based on SCIM v2 for separating the Identity en the Access management layers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Portal has already support for the standards for Single Sign On:&amp;nbsp; SAML. This is for Identity management&amp;nbsp; (authentication).&lt;/P&gt;&lt;P&gt;Our security standards require to separate the Access management (authorization). THis is company wide implemented via the SCIM interface. All applications within our company are now required to have a SAML and a SCIM interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My request/idea is to implement this SCIM interface to Portal.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basic workflow when working with SAML + SCIM:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;User is registered in Portal using his company Identity&lt;/LI&gt;&lt;LI&gt;Portal can verify login using the trusted SAML interface between portal and the OpenID/ADFS server using SAML&lt;/LI&gt;&lt;LI&gt;This way user can log in using Company Identity&lt;/LI&gt;&lt;LI&gt;Groups are created in Portal&lt;/LI&gt;&lt;LI&gt;Groups are synced with Accessmanagement (IAM) using SCIM&lt;/LI&gt;&lt;LI&gt;Groups are filled with the authorized Identities within IAM&lt;/LI&gt;&lt;LI&gt;Filled Groups are synced with Portal&lt;/LI&gt;&lt;LI&gt;Logged in user can access the authorized groups.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1 - 4 are now in place.&lt;/P&gt;&lt;P&gt;5 -7 have to be implemented using new SCIM v2 interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;SCIM v2 is an open standard, and worldwide.&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://en.wikipedia.org/wiki/System_for_Cross-domain_Identity_Management" title="https://en.wikipedia.org/wiki/System_for_Cross-domain_Identity_Management"&gt;System for Cross-domain Identity Management - Wikipedia&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="http://www.simplecloud.info/#implementations" title="http://www.simplecloud.info/#implementations"&gt;SCIM: System for Cross-domain Identity Management&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 15 Nov 2018 16:09:56 GMT</pubDate>
    <dc:creator>SchipholArchitect</dc:creator>
    <dc:date>2018-11-15T16:09:56Z</dc:date>
    <item>
      <title>Access Management based on SCIM v2 interface for Portal</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idi-p/934792</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We need a Access Management interface, based on SCIM v2 for separating the Identity en the Access management layers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Portal has already support for the standards for Single Sign On:&amp;nbsp; SAML. This is for Identity management&amp;nbsp; (authentication).&lt;/P&gt;&lt;P&gt;Our security standards require to separate the Access management (authorization). THis is company wide implemented via the SCIM interface. All applications within our company are now required to have a SAML and a SCIM interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My request/idea is to implement this SCIM interface to Portal.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basic workflow when working with SAML + SCIM:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;User is registered in Portal using his company Identity&lt;/LI&gt;&lt;LI&gt;Portal can verify login using the trusted SAML interface between portal and the OpenID/ADFS server using SAML&lt;/LI&gt;&lt;LI&gt;This way user can log in using Company Identity&lt;/LI&gt;&lt;LI&gt;Groups are created in Portal&lt;/LI&gt;&lt;LI&gt;Groups are synced with Accessmanagement (IAM) using SCIM&lt;/LI&gt;&lt;LI&gt;Groups are filled with the authorized Identities within IAM&lt;/LI&gt;&lt;LI&gt;Filled Groups are synced with Portal&lt;/LI&gt;&lt;LI&gt;Logged in user can access the authorized groups.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1 - 4 are now in place.&lt;/P&gt;&lt;P&gt;5 -7 have to be implemented using new SCIM v2 interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;SCIM v2 is an open standard, and worldwide.&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://en.wikipedia.org/wiki/System_for_Cross-domain_Identity_Management" title="https://en.wikipedia.org/wiki/System_for_Cross-domain_Identity_Management"&gt;System for Cross-domain Identity Management - Wikipedia&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="http://www.simplecloud.info/#implementations" title="http://www.simplecloud.info/#implementations"&gt;SCIM: System for Cross-domain Identity Management&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 Nov 2018 16:09:56 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idi-p/934792</guid>
      <dc:creator>SchipholArchitect</dc:creator>
      <dc:date>2018-11-15T16:09:56Z</dc:date>
    </item>
    <item>
      <title>Re: Access Management based on SCIM v2 interface for Portal</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/934793#M678</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Above examples include groups. It must also include roles/licenses (lvl1/lvl2 with the new names for Creator, Fieldworker etc..) and the special licenses (arcgis pro, navigator, etc..)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 Nov 2018 11:54:01 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/934793#M678</guid>
      <dc:creator>SchipholArchitect</dc:creator>
      <dc:date>2018-11-20T11:54:01Z</dc:date>
    </item>
    <item>
      <title>SCIM V2 based access management</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1034372#M3408</link>
      <description>&lt;P&gt;To manage user identities in cloud based applications and services easier we need an access management interface base on SCIM V2.&lt;/P&gt;&lt;P&gt;The idea is the same as already mentioned in the idea&amp;nbsp;&lt;A href="https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for-portal/idi-p/934792" target="_blank"&gt;https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for-portal/idi-p/934792&lt;/A&gt;&lt;/P&gt;&lt;P&gt;We need that for groups and roles.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Mar 2021 09:59:30 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1034372#M3408</guid>
      <dc:creator>JörgHeidemeier</dc:creator>
      <dc:date>2021-03-09T09:59:30Z</dc:date>
    </item>
    <item>
      <title>Re: SCIM V2 based access management</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1079185#M3409</link>
      <description>&lt;P&gt;We would also need this functionality.&lt;/P&gt;</description>
      <pubDate>Thu, 15 Jul 2021 13:39:05 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1079185#M3409</guid>
      <dc:creator>Martin1</dc:creator>
      <dc:date>2021-07-15T13:39:05Z</dc:date>
    </item>
    <item>
      <title>Re: Access Management based on SCIM v2 interface for Portal</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1229788#M3042</link>
      <description>&lt;P&gt;Strongly support the integration of SCIM for user and group provisioning. This is a core feature and requirement of our other enterprise applications, so would be good to see this developed.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Nov 2022 03:21:17 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1229788#M3042</guid>
      <dc:creator>ChrisPVella</dc:creator>
      <dc:date>2022-11-09T03:21:17Z</dc:date>
    </item>
    <item>
      <title>Re: SCIM V2 based access management</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1229789#M3410</link>
      <description>&lt;P&gt;Strongly support the integration of SCIM for user and group provisioning. This is a core feature and requirement of our other enterprise applications, so would be good to see this developed.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Nov 2022 03:21:28 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1229789#M3410</guid>
      <dc:creator>ChrisPVella</dc:creator>
      <dc:date>2022-11-09T03:21:28Z</dc:date>
    </item>
    <item>
      <title>Re: Access Management based on SCIM v2 interface for Portal</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1230004#M3045</link>
      <description>&lt;P&gt;I support this one too! Enterprise needs to support modern Enterprise IT tools for IAM.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Nov 2022 15:41:31 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1230004#M3045</guid>
      <dc:creator>John_Spence</dc:creator>
      <dc:date>2022-11-09T15:41:31Z</dc:date>
    </item>
    <item>
      <title>Re: Access Management based on SCIM v2 interface for Portal - Status changed to: Under Consideration</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1316936#M3390</link>
      <description />
      <pubDate>Wed, 09 Aug 2023 15:47:24 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1316936#M3390</guid>
      <dc:creator>pheede-esri</dc:creator>
      <dc:date>2023-08-09T15:47:24Z</dc:date>
    </item>
    <item>
      <title>Re: SCIM V2 based access management - Status changed to: Closed</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1316937#M3411</link>
      <description>&lt;P&gt;Closing as a duplicate of&amp;nbsp;&lt;A href="https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idi-p/934792" target="_blank"&gt;https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idi-p/934792&lt;/A&gt;. Please vote on that idea!&lt;/P&gt;</description>
      <pubDate>Wed, 09 Aug 2023 15:49:25 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1316937#M3411</guid>
      <dc:creator>pheede-esri</dc:creator>
      <dc:date>2023-08-09T15:49:25Z</dc:date>
    </item>
    <item>
      <title>Re: Access Management based on SCIM v2 interface for Portal</title>
      <link>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1318801#M3412</link>
      <description>&lt;P&gt;In case anyone needs it, here is a user management script that can be extended to give you near SCIM capabilities. It's not perfect, but it was the solution I came up with to deal with the user issue.&lt;/P&gt;&lt;P&gt;&lt;A href="https://github.com/wagisdev/AGOLPortalUserManagement" target="_blank"&gt;https://github.com/wagisdev/AGOLPortalUserManagement&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Aug 2023 17:18:37 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-enterprise-ideas/access-management-based-on-scim-v2-interface-for/idc-p/1318801#M3412</guid>
      <dc:creator>John_Spence</dc:creator>
      <dc:date>2023-08-15T17:18:37Z</dc:date>
    </item>
  </channel>
</rss>

