Features
The following provisioning features are supported when integrating with Entra ID:- Create users in Superblocks
- Remove users in Superblocks when they do not require access anymore
- Keep user attributes synchronized between Entra and Superblocks
- Provision groups and group memberships in Superblocks
Prerequisites
The scenarios outlined in this tutorial assumed that you already have the following items:- An Entra tenant
- A user account with permission to configure provisioning (for example, Application Administrator, Cloud Application administrator, Application Owner, or Global Administrator)
- A Superblocks organization on the Enterprise plan
- A user account in Superblocks with Admin permissions
Setup
- Sign in to the Microsoft Entra admin center
- Navigate to Identity → Applications → Enterprise applications
- Select your Superblocks SSO app or select + New application → + Create your own application
- In the app management screen, select Provisioning in the left panel
- Set the Provisioning mode to Automatic
-
Configure credentials as follows:
- Test the connection and click Save
- Optionally, configure user attributes
- Turn the Provisioning Status to On
- Select the Users and groups tab and assign the users or groups you want to sync
Configure user attributes
Certain user attributes in Entra can by synced to your Superblocks users’ profiles.Supported user attributes
The Superblocks SCIM API currently supports the following attributes:Create custom role attribute
All of the supported attributes listed above except forrole are supported by default in Entra ID. You can manage a user’s organization role via SCIM by configuring a custom attribute in Entra. To do so:
- Go to your app’s Provisioning page
- Expand the Mapping section
- Click on the User mapping
- Scroll to the bottom of the page and click Show advanced options
- Click Edit attribute list for customappsso
-
Add the following new attribute to the list
- Click Save
- Back on the User mapping page, click Add New Mapping
- Create a mapping with the Target mapping set to the role attribute just configured
- Click Save

