cancel
Showing results for 
Search instead for 
Did you mean: 

Group Sync via SCIM

MattS
Attendee

Zoom really needs to consider adding a full group sync schema to their SCIM implementation so that enterprise customers can easily manage syncing active directory group membership to zoom. This is a foundational thing that would allow easier automation of group and role management. 

 

Currently there are two methods for syncing groups to zoom, and both are sub-optimal for enterprise scale. 

1. Group Sync via SAML. When user logs in via SSO identity provider can send group membership. This works on a small scale but (a) does allow full group membership, instead it syncs 1 group based on rank priority. (b) there are limits to the number of groups that can be passed in this method.

2. The SCIM user schema includes ability to pass named groups go zoom via a single attribute. However this is not practical without creating additional automation in the identity provider to create an attribute with group names.

 

Bottom line - the SCIM standard solved this issue by enabling ability to sync group membership. Zoom would need to add this to their SCIM implementation.

1 ACCEPTED SOLUTION

MattS
Attendee

FYI, looks like zoom finally enabled this feature. last Thursday (8/31/23) our azure groups assigned to the zoom app where automatically synced to zoom groups via SCIM. We can finally move away from advanced SAML mapping which has always been clunky and limited in capability. 

View solution in original post

4 REPLIES 4

Ray_Harwood
Community Champion | Customer
Community Champion | Customer

Zoom has a process for handling Feature Requests such as the one you describe. You can use this Zoom web page to enter your feature request for Zoom's consideration, since they don’t track suggestions entered in the Zoom Community:
https://www.zoom.us/feed 


Ray - Office Hours at GoodClix.com
Please click Accept As Solution if this helped you !

Yep, I am aware and have previously submitted an official feature request. I get the sense that its low probability it would go anywhere since the feature isn't directly related to any one product. It's more of a foundational thing. 

 

Mostly posting here to see what others think. On that note It would be much better if zoom exposed feature requests more openly. 

MattS
Attendee

FYI, looks like zoom finally enabled this feature. last Thursday (8/31/23) our azure groups assigned to the zoom app where automatically synced to zoom groups via SCIM. We can finally move away from advanced SAML mapping which has always been clunky and limited in capability. 

Ray_Harwood
Community Champion | Customer
Community Champion | Customer

Thanks for the update, @MattS.  


Ray - Office Hours at GoodClix.com
Please click Accept As Solution if this helped you !