Skip to content

Commit 6ac3f33

Browse files
authored
Merge pull request #78872 from v-bhgad/zoom
Updated zoom provisioning article
2 parents e79e976 + 05584a5 commit 6ac3f33

File tree

10 files changed

+171
-5
lines changed

10 files changed

+171
-5
lines changed
21.7 KB
Loading
9.19 KB
Loading
17.9 KB
Loading
4.52 KB
Loading
14.1 KB
Loading
5.04 KB
Loading
35 KB
Loading
7.17 KB
Loading

articles/active-directory/saas-apps/toc.yml

Lines changed: 3 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -387,8 +387,6 @@
387387
href: encompass-tutorial.md
388388
- name: Envi MMIS
389389
href: envimmis-tutorial.md
390-
- name: Envoy
391-
href: envoy-tutorial.md
392390
- name: ePlatform
393391
href: eplatform-tutorial.md
394392
- name: EthicsPoint Incident Management (EPIM)
@@ -941,8 +939,6 @@
941939
href: promaster-tutorial.md
942940
- name: Proofpoint on Demand
943941
href: proofpoint-ondemand-tutorial.md
944-
- name: Proxyclick
945-
href: proxyclick-tutorial.md
946942
- name: PureCloud by Genesys
947943
href: purecloud-by-genesys-tutorial.md
948944
- name: PurelyHR
@@ -1467,4 +1463,6 @@
14671463
- name: Zscaler Three
14681464
href: zscaler-three-provisioning-tutorial.md
14691465
- name: Zscaler ZSCloud
1470-
href: zscaler-zscloud-provisioning-tutorial.md
1466+
href: zscaler-zscloud-provisioning-tutorial.md
1467+
- name: Zoom
1468+
href: zoom-provisioning-tutorial.md
Lines changed: 168 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,168 @@
1+
---
2+
title: 'Tutorial: Configure Zoom for automatic user provisioning with Azure Active Directory | Microsoft Docs'
3+
description: Learn how to configure Azure Active Directory to automatically provision and de-provision user accounts to Zoom.
4+
services: active-directory
5+
documentationcenter: ''
6+
author: zchia
7+
writer: zchia
8+
manager: beatrizd
9+
10+
ms.assetid: na
11+
ms.service: active-directory
12+
ms.component: saas-app-tutorial
13+
ms.workload: identity
14+
ms.tgt_pltfrm: na
15+
ms.devlang: na
16+
ms.topic: article
17+
ms.date: 06/3/2019
18+
ms.author: zchia
19+
---
20+
21+
# Tutorial: Configure Zoom for automatic user provisioning
22+
23+
The objective of this tutorial is to demonstrate the steps to be performed in Zoom and Azure Active Directory (Azure AD) to configure Azure AD to automatically provision and de-provision users and/or groups to Zoom.
24+
25+
> [!NOTE]
26+
> This tutorial describes a connector built on top of the Azure AD User Provisioning Service. For important details on what this service does, how it works, and frequently asked questions, see [Automate user provisioning and deprovisioning to SaaS applications with Azure Active Directory](../manage-apps/user-provisioning.md).
27+
>
28+
> This connector is currently in Public Preview. For more information on the general Microsoft Azure terms of use for Preview features, see [Supplemental Terms of Use for Microsoft Azure Previews](https://azure.microsoft.com/support/legal/preview-supplemental-terms/).
29+
30+
## Prerequisites
31+
32+
The scenario outlined in this tutorial assumes that you already have the following prerequisites:
33+
34+
* An Azure AD tenant
35+
* [A Zoom tenant](https://zoom.us/pricing)
36+
* A user account in Zoom with Admin permissions
37+
38+
## Add Zoom from the gallery
39+
40+
Before configuring Zoom for automatic user provisioning with Azure AD, you need to add Zoom from the Azure AD application gallery to your list of managed SaaS applications.
41+
42+
**To add Zoom from the Azure AD application gallery, perform the following steps:**
43+
44+
1. In the **[Azure portal](https://portal.azure.com)**, in the left navigation panel, select **Azure Active Directory**.
45+
46+
![The Azure Active Directory button](common/select-azuread.png)
47+
48+
2. Go to **Enterprise applications**, and then select **All applications**.
49+
50+
![The Enterprise applications blade](common/enterprise-applications.png)
51+
52+
3. To add a new application, select the **New application** button at the top of the pane.
53+
54+
![The New application button](common/add-new-app.png)
55+
56+
4. In the search box, enter **Zoom**, select **Zoom** in the results panel, and then click the **Add** button to add the application.
57+
58+
![Zoom in the results list](common/search-new-app.png)
59+
60+
## Assign users to Zoom
61+
62+
Azure Active Directory uses a concept called *assignments* to determine which users should receive access to selected apps. In the context of automatic user provisioning, only the users and/or groups that have been assigned to an application in Azure AD are synchronized.
63+
64+
Before configuring and enabling automatic user provisioning, you should decide which users and/or groups in Azure AD need access to Zoom. Once decided, you can assign these users and/or groups to Zoom by following the instructions here:
65+
66+
* [Assign a user or group to an enterprise app](../manage-apps/assign-user-or-group-access-portal.md)
67+
68+
### Important tips for assigning users to Zoom
69+
70+
* It is recommended that a single Azure AD user is assigned to Zoom to test the automatic user provisioning configuration. Additional users and/or groups may be assigned later.
71+
72+
* When assigning a user to Zoom, you must select any valid application-specific role (if available) in the assignment dialog. Users with the **Default Access** role are excluded from provisioning.
73+
74+
## Configure automatic user provisioning to Zoom
75+
76+
This section guides you through the steps to configure the Azure AD provisioning service to create, update, and disable users or groups in Zoom based on user and/or group assignments in Azure AD.
77+
78+
> [!TIP]
79+
> You may also choose to enable SAML-based single sign-on for Zoom, following the instructions provided in the [Zoom single sign-on tutorial](zoom-tutorial.md). Single sign-on can be configured independently of automatic user provisioning, though these two features compliment each other.
80+
81+
### Configure automatic user provisioning for Zoom in Azure AD
82+
83+
1. Sign in to the [Azure portal](https://portal.azure.com). Select **Enterprise Applications**, then select **All applications**.
84+
85+
![Enterprise applications blade](common/enterprise-applications.png)
86+
87+
2. In the applications list, select **Zoom**.
88+
89+
![The Zoom link in the Applications list](common/all-applications.png)
90+
91+
3. Select the **Provisioning** tab.
92+
93+
![Provisioning tab](common/provisioning.png)
94+
95+
4. Set the **Provisioning Mode** to **Automatic**.
96+
97+
![Provisioning tab](common/provisioning-automatic.png)
98+
99+
5. Under the **Admin Credentials** section, enter `https://api.zoom.us/scim` in **Tenant URL**. To retrieve the **Secret Token** of your Zoom account, follow the walkthrough as described in Step 6.
100+
101+
6. Sign in to your [Zoom Admin Console](https://zoom.us/signin). Navigate to **Advanced > Zoom for Developers** in the left navigation pane.
102+
103+
![Zoom Integrations](media/zoom-provisioning-tutorial/zoom01.png)
104+
105+
Navigate to **Manage** in the top-right corner of the page.
106+
107+
![Zoom Install](media/zoom-provisioning-tutorial/zoom02.png)
108+
109+
Navigate to your created Azure AD app.
110+
111+
![Zoom App](media/zoom-provisioning-tutorial/zoom03.png)
112+
113+
Select **App Credentials** in the left navigation pane.
114+
115+
![Zoom App](media/zoom-provisioning-tutorial/zoom04.png)
116+
117+
Retrieve the JWT Token value shown below and input this into the **Secret Token** field in Azure AD. If you need a new non-expiring token, you will need to reconfigure the expiration time which will auto generate a new token.
118+
119+
![Zoom Install](media/zoom-provisioning-tutorial/zoom05.png)
120+
121+
7. Upon populating the fields shown in Step 5, click **Test Connection** to ensure Azure AD can connect to Zoom. If the connection fails, ensure your Zoom account has Admin permissions and try again.
122+
123+
![Token](common/provisioning-testconnection-tenanturltoken.png)
124+
125+
8. In the **Notification Email** field, enter the email address of a person or group who should receive the provisioning error notifications and check the checkbox - **Send an email notification when a failure occurs**.
126+
127+
![Notification Email](common/provisioning-notification-email.png)
128+
129+
9. Click **Save**.
130+
131+
10. Under the **Mappings** section, select **Synchronize Azure Active Directory Users to Zoom**.
132+
133+
![Zoom User Mappings](media/zoom-provisioning-tutorial/zoom-user-mapping.png)
134+
135+
11. Review the user attributes that are synchronized from Azure AD to Zoom in the **Attribute Mapping** section. The attributes selected as **Matching** properties are used to match the user accounts in Zoom for update operations. Select the **Save** button to commit any changes.
136+
137+
![Zoom User Mappings](media/zoom-provisioning-tutorial/zoom-user-attributes.png)
138+
139+
12. To configure scoping filters, refer to the following instructions provided in the [Scoping filter tutorial](../manage-apps/define-conditional-rules-for-provisioning-user-accounts.md).
140+
141+
13. To enable the Azure AD provisioning service for Zoom, change the **Provisioning Status** to **On** in the **Settings** section.
142+
143+
![Provisioning Status Toggled On](common/provisioning-toggle-on.png)
144+
145+
14. Define the users and/or groups that you would like to provision to Zoom by choosing the desired values in **Scope** in the **Settings** section.
146+
147+
![Provisioning Scope](common/provisioning-scope.png)
148+
149+
15. When you are ready to provision, click **Save**.
150+
151+
![Saving Provisioning Configuration](common/provisioning-configuration-save.png)
152+
153+
This operation starts the initial synchronization of all users and/or groups defined in **Scope** in the **Settings** section. The initial sync takes longer to perform than subsequent syncs, which occur approximately every 40 minutes as long as the Azure AD provisioning service is running. You can use the **Synchronization Details** section to monitor progress and follow links to provisioning activity report, which describes all actions performed by the Azure AD provisioning service on Zoom.
154+
155+
For more information on how to read the Azure AD provisioning logs, see [Reporting on automatic user account provisioning](../manage-apps/check-status-user-account-provisioning.md).
156+
157+
## Connector limitations
158+
159+
* Zoom does not support provisioning for groups.
160+
161+
## Additional resources
162+
163+
* [Managing user account provisioning for Enterprise Apps](../manage-apps/configure-automatic-user-provisioning-portal.md)
164+
* [What is application access and single sign-on with Azure Active Directory?](../manage-apps/what-is-single-sign-on.md)
165+
166+
## Next steps
167+
168+
* [Learn how to review logs and get reports on provisioning activity](../manage-apps/check-status-user-account-provisioning.md)

0 commit comments

Comments
 (0)