Skip to main content

August 19, 2026

Provisioning Users to Omnissa Identity Service

After you complete the Omnissa Identity Service wizard in the Omnissa Connect console, provision users from your identity provider to Omnissa Identity Service. As a best practice, provision a few users at first to test the integration.

When you provision users, they are first provisioned to Omnissa Identity Service, and then provisioned automatically from Omnissa Identity Service to the Omnissa services you selected, such as Omnissa Access or Workspace ONE UEM.

Provisioning Users

Prerequisites

Make sure that all the users that you want to provision to Omnissa Identity Service have values for the SCIM user attributes required by Omnissa Identity Service. See User Attribute Mapping for Omnissa Identity Service for the list of required attributes.

Procedure

  1. (Microsoft Entra ID) Follow these steps to provision users and groups from Microsoft Entra ID.

    1. In the Microsoft Entra admin center, navigate to the Enterprise applications page and search for the provisioning app that you created.

    2. On the Overview page of the app, under Getting Started, click the Assign users and groups link.

    3. Click + Add user/group.

    4. In the Add Assignment page, under Users and groups, click the None selected link.

    5. In the Users and groups pane, search for and select users and groups to provision, then click Select.

    6. In the Add Assignment page, click Assign.

    7. From the Manage menu, select Provisioning, and click Start Provisioning.

      The users and groups that you selected will be provisioned after the fixed provisioning interval set by Microsoft Entra ID. See the Microsoft Entra ID documentation for more information.

    8. To provision a few users immediately for testing purposes, click Provision on demand.

      The View provisioning details section displays Provisioning interval (fixed) is 40 minutes.

    9. In the Select a user or group text box, search for and select the users to provision immediately, then click Provision.

  2. (Okta) Follow these steps to provision users and groups from Okta.

    1. In the Okta Admin console, navigate to the provisioning app you created.

    2. Select the Assignments tab.

    3. To assign users, follow these steps.

      1. Select Assign > Assign to People.

        ""

      2. Select a user and click Assign.

      3. Make sure the user has values for the required attributes, and click Save and Go Back.

      4. Assign the app to other users, then click Done.

        Assigned users are synced immediately to Omnissa Identity Service.

    4. To assign groups, follow these steps.

      1. Select Assign > Assign to Groups.

        ""

      2. Click Assign next to the group name, then click Save and Go Back.

      3. Assign the app to other groups, then click Done.

      4. Select the Push Groups tab.

      5. Select Push Groups > Find groups by name.

      6. Enter the name of the group in the search box and select the group from the results.

      7. Make sure Push group memberships immediately is selected, and click Save.

        For example:

        ""

      8. Verify that the group status changes to Active, which indicates that the group has been pushed.

        For example:

        The Push Status column displays Active.

  3. (Google Workspace) Follow these steps to provision users from Google Workspace.

    1. In the Google Workspace Admin console, navigate to Apps > Web and mobile apps.

    2. Select the provisioning app that you created to provision users to Omnissa Identity Service.

    3. Expand the User access section by clicking the arrow.

    4. Turn on user access for the users you want to provision to Omnissa Identity Service by selecting ON for the relevant groups or organizational units.

    5. Click Save.

    6. On the main page of the app, in the Autoprovisioning section, turn on autoprovisioning by moving the toggle to Active.

  4. (Other SCIM 2.0 Identity Provider) Follow your identity provider documentation to provision users and groups.

    Consider the following:

    • Provision a few users at first to test the integration.
    • If your identity provider has a long provisioning interval, look for an option to provision immediately so that you can test the integration without waiting for the next provisioning time.
    • Check your identity provider documentation for information about how to provision users and groups. In some identity providers, provisioning a group might not automatically provision the users.

What to do next

Verify that the test users and groups are successfully provisioned to Omnissa Identity Service and Omnissa services.

Managing Email Notifications for Users Provisioned to Workspace ONE UEM

You can configure whether end users receive an email notification when their accounts are provisioned in Workspace ONE UEM through Omnissa Identity Service. By default, a user activation email is sent upon provisioning. You can turn off email notifications or customize the email. See Workspace ONE UEM Directory Services Configuration for information.

Was this page helpful?

Provide feedback for this topic

Was this topic helpful?

Please do not include any personal or confidential information.

Generating link…