This feature allows you to sync Entra ID (formerly Azure AD) account and Group information to Teachme Biz.
※For integration with other services, please see here.
By eliminating the need to manage information in two places, you can significantly reduce the burden of account management.
Additionally, by deleting accounts in Entra ID (formerly Azure AD), you can prevent accounts from being overlooked when employees leave the company, maintaining a higher level of Security.
Feature Overview
Prerequisites for Using the Feature
- Single Sign-On Settings have been configured between Entra ID (formerly Azure AD) and Teachme Biz.
Related: Single Sign-On Setup with Entra ID (formerly Azure AD) - Web Browser Version
https://teachme.jp/8/manuals/42394855/
- The email addresses of employees managed in Entra ID (formerly Azure AD) match the email addresses of accounts in Teachme Biz.
※It is not necessary for all Teachme Biz account email addresses to be registered in Entra ID (formerly Azure AD).
What You Can Do with "User Provisioning"
- Using the creation, update, or deletion of accounts in Entra ID (formerly Azure AD) as a trigger, you can add new accounts, update, or delete accounts in Teachme Biz.
What You Can Do with "Team Provisioning"
- Using the creation, update, or deletion of "Groups" in Entra ID (formerly Azure AD) as a trigger, you can add new, update, or delete "Teams" in Teachme Biz.
- Using changes to accounts within a "Group" in Entra ID (formerly Azure AD) as a trigger, you can add or remove accounts from "Teams" in Teachme Biz.
Notes
-
Teachme Biz accounts newly created through user Provisioning do not have folder viewing permissions, or manual viewing and editing permissions.
After an account is created, please manually Add to folder as needed.
Related:
What can each user do based on their permissions?
https://help.teachme.jp/hc/en-us/articles/4403398967961
Add or remove users from folder (Web Browser)
https://teachme.jp/8/manuals/4929449
-
Even if you change account information on the Teachme Biz side, the account information on the Entra ID (formerly Azure AD) side will not be updated.
-
Nested Entra ID (formerly Azure AD) Groups cannot be synced as "Teams" in Teachme Biz.
-
If you change the Single Sign-On Settings to an IdP other than Entra ID (formerly Azure AD) while user Provisioning is active, user Provisioning will be disabled and the Message "Single Sign-On settings have been saved. SCIM Provisioning has been disabled." will be displayed.
Available Plans (Teachme Biz)
Please check the link for the plans and options that can use this feature.
Available Plans (Entra ID) ※As of July 2024
- Microsoft Entra ID P1
- Azure Active Directory Premium P2
- Microsoft Entra ID Governance
※Plans that support "Automatic Group Provisioning for Applications"
Related: Microsoft Entra Plans and Pricing (External Site)
Setup Method
Permissions Required for Initial Setup
-
Teachme Biz: Group administrator or Sub-administrator permissions are required.
Related: Check Group Administrators and Sub-Administrators (Web Browser)
-
Entra ID (formerly Azure AD): One of the following roles is required: Application Administrator, Application Developer, or Cloud Application Administrator.
Related: Application Administrator Application Developer Cloud Application Administrator
Setup Method
Please refer to the online manual.
▼Configure user provisioning with Entra ID (formerly Azure AD) (Web Browser)
https://teachme.jp/8/manuals/14985766
▼Configure team provisioning with Entra ID (formerly Azure AD) (Web Browser)
https://teachme.jp/8/manuals/14985745/
▼Change settings for sending email invitations to users added through provisioning (Web Browser)
https://teachme.jp/8/manuals/23718284