New 5/23/2024 Bailey Coole

7

Votes

Pull in RBAC roles from Enterprise IDP via SAML claims or SCIM provisioning of groups

Hi

We try to use our IDP (Entra ID) as a single sorce of truth for user roles and access. 
Our users login to JitBit via SAML SSO. 

It would be nice to be able to assign users to departements or roles (manager, technician etc) based on their groups in the IDP. 

This could be achieved via either either group claims sent in the SAML request, or via group provisioning via SCIM. Both these methods would worth for any standard IDP (Entra, Okta, etc), and would not impact organistions who choose not to deploy them. 
sso
KW
Kyle Wilcox 7/14/2025 10:35 AM
Yes, this would be fantastic. For example, I'm using JitBit at school. My users all have the same domain, but I want students and staff to be in a different department and have access to different KB articles and ticket categories.

Log in to comment...