# SSO and SCIM setup introduction

For information about the feature, see [sso](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/about/sso "mention") and [scim](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/about/scim "mention").

{% hint style="warning" %}
With SCIM provisioning, users and groups are managed exclusively in your identity provider.&#x20;
{% endhint %}

{% hint style="info" %}
If you don't want to use SCIM provisioning, see [set-up-sso-with-jit](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/set-up-sso-with-jit "mention")
{% endhint %}

## You have not yet set up SSO

If you have not yet set up SSO, follow these steps:

* [saml-sso](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/setup/saml-sso "mention")
* [scim](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/setup/scim "mention")
* [map-groups](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/setup/map-groups "mention")
* [complete-setup](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/setup/complete-setup "mention")

## You have set up SSO without SCIM

If you have already set up SSO with the new setup assistant and without SCIM, follow these steps:

* [scim](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/setup/scim "mention")
* [map-groups](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/setup/map-groups "mention")

If you have set up SSO without the new setup assistant, follow these steps:

* [saml-sso](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/setup/saml-sso "mention")
* [scim](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/setup/scim "mention")
* [map-groups](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/setup/map-groups "mention")

## You have set up SSO with SCIM deprovisioning

If you have set up SCIM deprovisioning and want to set up full SCIM, proceed as follows:

1. Retrieve your enterprise. For more information, see [retrieving-and-viewing-your-enterprise](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/managing-enterprise/retrieving-and-viewing-your-enterprise "mention").
2. Go to **Administration** > **SSO & Provisioning**.
3. In **Provisioning (SCIM)**, select the **Configure provisioning** button. The provisioning setup assistant opens.
4. Select **Generate Token** in the **Bearer Token** section.
5. Copy the generated token.
6. In your identity provider, open the application used to manage Single Sign-On in SonarQube Cloud and paste the new token as explained below depending on your identity provider.

<details>

<summary>Okta</summary>

1. Select the **Provisioning** tab.
2. In the **HTTP Header** section, paste the token into **Bearer**.

</details>

<details>

<summary>Microsoft Entra ID</summary>

1. Select the **Provisioning** menu.
2. In **Admin credentials**, paste the token into **Secret token**.

</details>

<details>

<summary>JumpCloud</summary>

* In **Configuration Settings** > **Service Provider (SP) Configuration**, paste the token into **Token Key**.

</details>

7. Follow [map-groups](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/setup/map-groups "mention").

## Related pages <a href="#related-pages" id="related-pages"></a>

* [edit-or-delete-sso-setup](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/edit-or-delete-sso-setup "mention")
* [troubleshooting](https://docs.sonarsource.com/sonarqube-cloud/administering-sonarcloud/enterprise-security/sso-and-provisioning/troubleshooting "mention")
* [#deleting-sso-account](https://docs.sonarsource.com/sonarqube-cloud/managing-organization/users-and-permissions/user-on-and-offboarding#deleting-sso-account "mention")

## Related online learning

* <i class="fa-desktop">:desktop:</i> [Initial SonarQube Cloud Enterprise set up](https://www.sonarsource.com/learn/course/sonarqube-cloud/e390f0fe-64f4-4840-b74c-e63598af72f2/initial-sonarqube-cloud-enterprise-set-up)
