Hello Team,
We currently use Okta for SSO and SCIM provisioning with Cato.
We want to keep SSO authentication on Okta, but move provisioning from Okta to Saviynt.
Our Understanding:
- We understand SCIM endpoints are scoped per directory (sourceId) as /scim/v2/{accountId}/{sourceId}.
- We also noted documentation stating multiple IdPs are supported, but not recommended as a migration method.
Could you please advise the following?
- Is there a recommended procedure to migrate existing users from an Okta SCIM directory to a new Saviynt SCIM directory?
If adding a new SCIM directory is not recommended for migration, please point us to the recommended migration steps or best practices.
- We want users and groups provisioned via Saviynt to authenticate via Okta SSO.
Is mapping Saviynt directory to the Okta SSO provider a possible configuration?
Please let us know if you have any recommend plan.
Thank you,