이 페이지는 아직 영어로 제공되지 않습니다. 번역 작업 중입니다. 현재 번역 프로젝트에 대한 질문이나 피드백이 있으신 경우 언제든지 연락주시기 바랍니다.
SCIM is available with the Infrastructure Pro and Infrastructure Enterprise plans.
Due to a Microsoft freeze on third-party app updates in Entra following a security incident in late 2024, Team provisioning via SCIM is unavailable. To create Teams in Datadog, use one of the supported alternatives:
SAML mapping,
Terraform,
the public API, or
direct calls to the SCIM server. SCIM can still be used to provision users.
See the following instructions to synchronize your Datadog users with Microsoft Entra ID using SCIM.
For capabilities and limitations of this feature, see SCIM.
Prerequisites
SCIM in Datadog is an advanced feature available with the Infrastructure Pro and Infrastructure Enterprise plans.
This documentation assumes your organization manages user identities using an identity provider.
Datadog strongly recommends that you use a service account application key when configuring SCIM to avoid any disruption in access. For further details, see using a service account with SCIM.
When using SAML and SCIM together, Datadog strongly recommends disabling SAML just-in-time (JIT) provisioning to avoid discrepancies in access. Manage user provisioning through SCIM only.
Add Datadog to the Microsoft Entra ID application gallery
Browse to Identity -> Applications -> Enterprise Applications
Click New Application
Type “Datadog” in the search box
Select the Datadog application from the gallery
Optionally, enter a name in the Name text box
Click Create
Note: If you already have Datadog configured with Microsoft Entra ID for SSO, go to Enterprise Applications and select your existing Datadog application.
Configure automatic user provisioning
In the application management screen, select Provisioning in the left panel
In the Provisioning Mode menu, select Automatic
Open Admin Credentials
Complete the Admin Credentials section as follows:
Tenant URL: https:///api/v2/scim?aadOptscim062020
Note: Use the appropriate subdomain for your site. To find your URL, see Datadog sites.
Note: The ?aadOptscim062020 part of the Tenant URL is specifically for Entra ID. This is a flag that tells Entra to correct its SCIM behavior as outlined in this Microsoft Entra documentation. If you are not using Entra ID, you should not include this suffix on the URL.
Secret Token: Use a valid Datadog application key. You can create an application key on your organization settings page. To maintain continuous access to your data, use a service account application key.
Click Test Connection, and wait for the message confirming that the credentials are authorized to enable provisioning.
Click Save. The mapping section appears. See the following section to configure mapping.
Attribute mapping
User attributes
Expand the Mappings section
Click Provision Azure Active Directory Users. The Attribute Mapping page appears.
Set Enabled to Yes
Click the Save icon
Under Target Object actions, ensure Create, Update, and Delete actions are selected
Review the user attributes that are synchronized from Microsoft Entra ID to Datadog in the attribute mapping section. Set the following mappings: