The Semana integration with Microsoft allows the following cases:
All integrations are based on the Microsoft Graph API and respect all the settings defined in Azure / M365 (user permissions, etc…)
<aside> 💡 It’s also possible to provision users using SCIM protocol, see : Semana - Microsoft provisioning with SCIM
</aside>
<aside> ⚠️ The AD and Semana user MUST match (same email). For security purpose, during the consent flow Semana requests user access in order to verify the consenting AD admin is a Semana admin for the workspace too.
</aside>
As Semana admin, go to the page “Admin > Integrations”, then click on “Connect” (or “Settings”) on the Microsoft tile.
In order to allow Semana to synchronize the user population into Semana from AzureEntra (M365), the admin has to give access using an admin consent to the “Semana - Users” app, by clicking on “Connect Semana - Users to you Microsoft tenant”.
<aside> 💡
This step grants application permission on scope “User.Read.All”
</aside>
Then, let’s click on the checkbox to activate the provisioning.
<aside> 💡 The synchronisation runs every 6h, new users will be created and old ones will be suspended
</aside>
In order to filter by groups, the admin has to give access using an admin consent to the “Semana - Groups” app, by clicking on “Connect Semana - Groups to you Microsoft tenant”.
<aside> 💡
This step grants application permission on scope “Group.Read.All”
</aside>
Then, the admin can select groups related Semana provisioning.