Skip to main content
Solved

SCIM-Based User Provisioning with GSuite

  • May 25, 2021
  • 5 replies
  • 504 views

Forum|alt.badge.img+6

Hi all!

 

It is supposed that Netskope can import the OUs and User Groups from GSuite user platform directly using SCIM but, I couldn't find the way to do it. In addition, all the documentation I find is related to SCIM integration with Azure AD and Okta. I've been looking for a way into GSuite Admin Console and there is nothing similar.

 

Anyone here has had the same issue?

 

Thanks!

Best answer by sfoster

Hi @juanm,

 

There's a limitation with Google and their use of SCIM, they do not provision groups only users. If you require OU's and Groups you could use our Directory Importer to act in the middle to extract the users/OU's and provision them on Netskope. Here's a doc that will help.

 

Steve

This topic has been closed for replies.

5 replies

sfoster
Netskope Employee
Forum|alt.badge.img+13
  • Netskope Employee
  • Answer
  • May 25, 2021

Hi @juanm,

 

There's a limitation with Google and their use of SCIM, they do not provision groups only users. If you require OU's and Groups you could use our Directory Importer to act in the middle to extract the users/OU's and provision them on Netskope. Here's a doc that will help.

 

Steve


Forum|alt.badge.img+6
  • Author
  • New Member III
  • May 26, 2021

Hi @sfoster ,

 

Thank you very much for that! I assume that I can only import pure users from Gsuite to Netskope. I'm currently taking a look at the guide you shared and will try that method for user creation today. 

 

Thank you again! I believe this is a good solution for me :).


sfoster
Netskope Employee
Forum|alt.badge.img+13
  • Netskope Employee
  • May 26, 2021

Good luck @juanm, come back and let us know how you progress!


Leandrine
Netskope Partner
Forum|alt.badge.img+6
  • Netskope Partner
  • October 10, 2023

Dear @sfoster , how are you doing today? I´m following the steps present on this document but my tenant is not importing the users/groups from the Gsuite with status log below:

I have followed every step with caution and I could not find any error. I mean, the ldap connection was done, the ldap query was valid. I can see the successful connection coming from netskope adapter in my GSuite log event.

 

The doubt that I have is related to the step 58 page 27:

 

 My group´s name is "XYZ INFRASTRUCTURE DEPARTMENT" and its e-mail is infrastructure@xyz.com.

 

Dynamic Group Name : "which name should I have to use it here?"

 

Thank you,

 

Anderson Leandrine


maheshchavan
Netskope Partner
  • Netskope Partner
  • October 18, 2024

Hi

 

It any document available for onboard users from google workplace to netskope.

 

 

Thanks & Regards

Mahesh