Grouper Azure provisioner configuration start with scaffolding
Start with: Common Azure pattern
First few fields can show one at a time when the previous is filled in
Azure external system ID (required)
Azure pattern: drop down with options below (show after external system selected)
manageGroupsManageEntities
default start with manage entities true
manageGroupsReadonlyEntities
default start with manage entities false
other
proceed with screen
User attributes type: drop down with options, required (show after ldap pattern)
Only uses built in core attributes e.g. subjectId, subjectIdentifier0-2, email, name, description or translations of those (value: core)
Needs other subject source attributes (value: subjectSource)
Needs a SQL or LDAP filter, but not other subject attributes. (value: entityResolver)
Needs subject source source attributes and SQL or LDAP filter. (value: subjectSourceAndEntityResolver)
if (user attribute type is subjectSource or subjectSourceAndEntityResolver)
list those attributes and validate against subject source (textfield, comma separated attributes, required)
Azure group info
displayName attribute value (dropdown required: extension, idIndex, name, other, script, uuid)
use group description? boolean default true
mailNickname attribute value (dropdown required: extension, idIndex, name, other, script, uuid)
has metadata for 'group type'? boolean default true
has metadata for allowOnlyMembersToPost? boolean default false
has metadata for hideGroupInOutlook? boolean default false
has metadata for subscribeNewGroupMembers? boolean default false
has metadata for welcomeEmailDisabled? boolean default false
has metadata for resourceProvisioningOptionsTeams? boolean default false
Azure entity info
Entity user principal name (drop down not required) (other, script, subjectId, subjectIdentifier0, subjectIdentifier1, subjectIdentifier2)
Entity mail nickname (drop down not required) (other, script, subjectId, subjectIdentifier0, subjectIdentifier1, subjectIdentifier2)
Entity on premises immutable ID (drop down not required) (other, script, subjectId, subjectIdentifier0, subjectIdentifier1, subjectIdentifier2) (validate that at least one of user principal name, on prem immutable id, mail nickname is selected)
Manage entities in Azure? (boolean default false)
(if manage entities) Entity display name (drop down required) (name, none, other, script, subjectId, subjectIdentifier0, subjectIdentifier1, subjectIdentifier2)
add disabled full sync daemon? boolean default to true
add disabled incremental sync daemon? boolean default to true