> ## Documentation Index
> Fetch the complete documentation index at: https://statsig-4b2ff144-kill-dead-node-pages.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

# Okta SCIM User and Project/Role Management

## Import Existing Statsig Users and Groups

<Note>
  Users not assigned to the integration cannot be pushed into groups.
</Note>

* In Okta, go to the Statsig app's "Import" tab
* Click "Import Now" to fetch existing Statsig users and groups
* Process the imported users as needed

<Frame>
  <img src="https://mintcdn.com/statsig-4b2ff144-kill-dead-node-pages/Vb2HaaR2D_Fcseq_/images/okta_scim_steps/step6-import-existing-users.png?fit=max&auto=format&n=Vb2HaaR2D_Fcseq_&q=85&s=4d022873459d314cecaf4f32824a0dfb" alt="img" width="2040" height="1440" data-path="images/okta_scim_steps/step6-import-existing-users.png" />
</Frame>

## Manage User Assignments

* Use the "Assignments" tab in Okta to add or remove users from Statsig
* Adding a user assignment in Okta will create the user in Statsig, while removing the assignment will deactivate the user's Statsig account

<Frame>
  <img src="https://mintcdn.com/statsig-4b2ff144-kill-dead-node-pages/Vb2HaaR2D_Fcseq_/images/okta_scim_steps/step7-manage-user-assignments.png?fit=max&auto=format&n=Vb2HaaR2D_Fcseq_&q=85&s=eef4444457916a8187639ed85335c3f4" alt="img" width="2084" height="1366" data-path="images/okta_scim_steps/step7-manage-user-assignments.png" />
</Frame>

## Push Groups to Statsig

1. In Okta, go to the Statsig Integration's "Push Groups" tab
   <Frame>
     <img src="https://mintcdn.com/statsig-4b2ff144-kill-dead-node-pages/Vb2HaaR2D_Fcseq_/images/okta_scim_steps/step8-push-groups-1.png?fit=max&auto=format&n=Vb2HaaR2D_Fcseq_&q=85&s=60419f475d227593e556a278e3415115" alt="img" width="2042" height="1428" data-path="images/okta_scim_steps/step8-push-groups-1.png" />
   </Frame>

2. Click the settings button and disable "Rename Groups"
   <Frame>
     <img src="https://mintcdn.com/statsig-4b2ff144-kill-dead-node-pages/Vb2HaaR2D_Fcseq_/images/okta_scim_steps/step8-push-groups-2.png?fit=max&auto=format&n=Vb2HaaR2D_Fcseq_&q=85&s=a86ff1215c85ee60726bb5233a85f73e" alt="img" width="2066" height="1336" data-path="images/okta_scim_steps/step8-push-groups-2.png" />
   </Frame>

3. Click "Push Groups" and select the method for finding groups in Okta.
   <Frame>
     <img src="https://mintcdn.com/statsig-4b2ff144-kill-dead-node-pages/Vb2HaaR2D_Fcseq_/images/okta_scim_steps/step8-push-groups-3.png?fit=max&auto=format&n=Vb2HaaR2D_Fcseq_&q=85&s=d53a8cef3a78414a941c5f05388c4c41" alt="img" width="2034" height="1436" data-path="images/okta_scim_steps/step8-push-groups-3.png" />
   </Frame>

4. Type in and select the Okta group that will push to a Statsig Project x Role Group.

* You can find Groups in left nav of Okta: `Directory > Groups`. In there, you will see the groups created from Okta and groups created by Statsig.
* The required groups are groups you created from Okta. You can filter by choosing `Group source type` and set to `Okta groups`. If you don't have any, go ahead and create it with members as well.
  <Frame>
    <img src="https://mintcdn.com/statsig-4b2ff144-kill-dead-node-pages/Vb2HaaR2D_Fcseq_/images/okta_scim_steps/step8-push-groups-4.png?fit=max&auto=format&n=Vb2HaaR2D_Fcseq_&q=85&s=897c5a583ca2483d4ea59a5b3198fbc2" alt="img" width="2038" height="1054" data-path="images/okta_scim_steps/step8-push-groups-4.png" />
  </Frame>

5. Now let's link/assign Okta group you created from Okta to the Statsig groups with role you want.

* Change `Match Result & Push Action` to `Link Group`
  <Frame>
    <img src="https://mintcdn.com/statsig-4b2ff144-kill-dead-node-pages/Vb2HaaR2D_Fcseq_/images/okta_scim_steps/step8-push-groups-5.png?fit=max&auto=format&n=Vb2HaaR2D_Fcseq_&q=85&s=7245129138e669d61aaf300959cc1693" alt="img" width="2054" height="1616" data-path="images/okta_scim_steps/step8-push-groups-5.png" />
  </Frame>

6. Select the Statsig Project x Role Group that the Okta group will push to.

* We display the Statsig Project x Role Group with the format `Statsig-<Project Name>-<Role Name>` on Okta.
* By default Okta only allows you to map 1 Okta Group to 1 Statsig Group.
  <Frame>
    <img src="https://mintcdn.com/statsig-4b2ff144-kill-dead-node-pages/dilvV2AX5QlHMhxA/images/okta_scim_steps/step8-push-groups-6.png?fit=max&auto=format&n=dilvV2AX5QlHMhxA&q=85&s=58da1d3ea304adffa445ef8da13a9d2f" alt="img" width="2052" height="1596" data-path="images/okta_scim_steps/step8-push-groups-6.png" />
  </Frame>

7. Then link the Okta group to a Statsig Project x Role Group. On save the group should push to Statsig. All future group changes on Okta will be pushed to Statsig.
   <Frame>
     <img src="https://mintcdn.com/statsig-4b2ff144-kill-dead-node-pages/dilvV2AX5QlHMhxA/images/okta_scim_steps/step8-push-groups-7.png?fit=max&auto=format&n=dilvV2AX5QlHMhxA&q=85&s=c5573c44a8116c879c259bf08a3fbe99" alt="img" width="2062" height="1612" data-path="images/okta_scim_steps/step8-push-groups-7.png" />
   </Frame>
