Sicm
SCIM automates user identity management across various platforms. It synchronizes user data so that information remains up to date in all connected applications. When a user is added or removed in Azure Entra, the changes are automatically applied in Prostream. Setting up users in Prostream consists of two steps: claiming domains and configuring user management via Azure Entra.
Written By Rico van der Stelt
1. Claim Your Domain
Before setting up user management, claim the domains associated with users’ email addresses. Only users with email addresses from a claimed domain will be assigned.
💡 Tip: A domain can be claimed by multiple organizations. If another organization has already claimed the domain, you can still claim it independently.
Create a TXT record in Prostream
Go to Organization → Settings → Domains.
Add the domains for which you want to manage users.
Prostream generates a unique TXT record identifier for each domain.
Add a TXT Record to Your DNS
Go to the DNS management console for your domain.
Add a new TXT record with the identifier from Prostream.
Save the record.
Prostream automatically checks your DNS for the TXT record. Once the record is found and verified, your domain is claimed.
⚠️ Note: Can’t Prostream find the TXT record? Check to see if the record has propagated correctly. DNS propagation can take up to 24 hours.
2. Set up user management
Once you’ve claimed a domain, set up users via SCIM. We’ll use Azure Entra as an example.
Generate a SCIM token in Prostream
Go to User Provisioning in Prostream.
Click Generate token.
Configure Azure Entra
Open the Azure Entra portal and go to Enterprise Applications.
Select the application you want to connect to Prostream, or create a new one:
Click "Create your own application."
Select "Integrate any other application you didn't find in the gallery."
Go to the Provisioning tab and click Get started.
Select "Automatic."
Under "Admin Credentials," enter:
URL:
https://graph.prostream.app/scimSecret token: Paste the SCIM token from Prostream.
Test the connection—it should work without any errors.
Optionally, enter an email address for error notifications under Settings.
Go to Attribute Mapping → Provision Microsoft Entra ID Groups.
Disable "Provision Microsoft Entra ID Groups."
Click Save and return to the application.
Go to Attribute Mapping → Provision Microsoft Entra ID Users.
Verify that the mappings are configured correctly.
3. Testing
Go to "Provision on demand."
Enter a user you want to provision manually.
Click Provision.
Verify that the provisioning was successful.
Set the Provisioning status to On and save the changes.
Users in this application are now automatically provisioned to Prostream.
⚠️ Note: If you encounter any errors, please contact us at support@pro4all.nl.