Improved SSO and Identity Management Applications Experience

Get ready for another upgrade! Introducing the revamped SSO and Identity Management Applications (Applications) page. After enhancing the Devices List and Users List pages, we're bringing improvements to the Applications page. Expect all the familiar features and functionality, now with an even better experience configuring and updating prebuilt applications.

This update lays the groundwork for future planned improvements to SCIM integrations. We will be releasing those improvements to the Applications page incrementally, so keep checking back for updates to the experience.

The new enhancements are:

  1. New Page Layout - the legacy aside view has been changed to a full page.
  2. New Actions menu - as part of the full-page interface update, the side information panel has changed.
  3. Improved Export Attribute Mapping list:
    • A list showing the required and optional SCIM user attributes is available immediately after creating a prebuilt connector
    • Using the Edit function, admins can now selectively exclude specific optional attributes, preventing their transmission to the Service Provider. Previously, all available user attributes were automatically transmitted but

Tip:

Click any image in this article to enlarge it.

Full-Page Application Details

The legacy aside view has been replaced with a full-page interface, providing a more expansive and streamlined experience for viewing and managing application connector details.

OldNew

Actions Menu

The status of your integration(s), certificate and IdP Key are now shown above the application configuration tabs. Certificate management, uploading the IdP key and deactivating IdM has been moved to the new Actions menu.

OldNew


Attribute Mapping Table

The Export Attribute Mapping table is available after creating a SCIM application connector. These capabilities apply to both pre-built and custom SCIM connectors, providing increased transparency and improved troubleshooting.

Key Capabilities

From your application's Identity Management tab, you can now customize SCIM attribute mappings to shape data before it is sent to the SP:

  • See and Edit Default Mappings: View the default mapping set for any connector and modify them to fit your requirements
  • Flexible Mapping Types: Mappings can be direct (e.g., firstname → name.givenName) or configured using expressions, constants, and booleans
  • Standard and Custom Attributes: Map JumpCloud standard attributes and custom user attributes to SCIM attributes.
  • Manager Attribute: Map the manager attribute from the JumpCloud system user record to the SCIM managers object on the SP side. Use the manager's Distinguished Name or Email from JumpCloud to the manager.value attribute in the SCIM schema, ensuring reporting hierarchies are maintained in the target application.
  • Schema Extensions: Support for mapping to service provider custom schema extensions where available
  • Granular Inclusion/Exclusion: Include or exclude specific attributes at a granular level (not just optional ones) while maintaining the ability to Restore Defaults at any time

Note:

The previous behavior, where all available user attributes were automatically transmitted, has been replaced by these configurable mappings. Attribute transmission is now strictly governed by the attribute mapping UI and/or API.

OldNew
Back to Top

Still Have Questions?

If you cannot find an answer to your question in our FAQ, you can always contact us.

Submit a Case