Specify the default group to use if an issue occurs mapping your Identity Provider (IdP) groups to Alida auto-provisioning groups.
The group you set as the default group should be the group you have defined with the least privileges. For example, if you are an Analytics customer assigning a group with the Dashboard Viewer role, users provisioned to this group are restricted to viewing dashboards.
This ensures that user provisioning defaults to a non-sensitive group with restricted access if the mapping between an IdP group and the Alida provisioning group fails.
Note: SCIM synchronization
starts in a paused state. You cannot change the default group while SCIM sync is
active. Pause sync before you change the default group so that Alida does not apply
unexpected role assignments while you update the configuration.
To change the default group when a token is already configured:
- Pause SCIM sync on the User Auto-Provisioning page. For details, see Pause or resume SCIM sync.
- Select the new group as the default group.
- When your IdP configuration is still correct, resume SCIM sync.