Table of Contents

Data management with FACT24 ENS+

Anita Wilknitz Updated by Anita Wilknitz

There are five different connection options to import persons and groups into FACT24.

Level of integration with your proprietary systems

Connection options to import persons and groups into FACT24.

Visualisation

Low

  1. Manual upload of csv files in Web application (only data import and updates possible)
    For small amount of person data and simple organization structures.

  1. Synchronization via SFTP server hosted by F24
    Manual upload replaced by automated, pre-scheduled update. Enabled via Orchestra by Soffico GmbH.

Middle

  1. Connect your Active Directory via LDAP protocol (only person data import and updates possible)
    Enabled via Mediagateway to be installed in customer IT environment, recommended up to 10k persons. Groups cannot be imported via this way.

  1. Synchronisation via Web Services API
    Connect your HR system to FACT24’s Web Services API by programming your interface.

High

  1. Synchronisation via SCIM
    Automatic synchronisation of data from Azure Active Directory (now known as Microsoft Entra ID) with person lists in FACT24.

Details of the individual connection options:

1) Manual upload of csv files in Web application (only data import and updates possible)

Add or edit persons and groups by importing csv files in the person and group configuration. File size restriction is 10 MB, usually suitable up to 10k persons.

Availability: All product editions.

2) Synchronization via SFTP server hosted by F24

As an optional additional service, data in file formats including CSV and XML can be uploaded to FACT24 using the F24 SFTP server. This can also be set up as an automated process, depending on your preferred method. Configuration costs and monthly usage fees are shown in our price list. Recommended for 1,000 persons and over.

Availability: as optional add-on from ENS+ Essential, implementation required.

3) Connect your Active Directory via LDAP protocol (only person data import and updates possible)

IT environment, recommended up to 10k persons. Import your person data via generic LDAP protocol. Mediagateway has to be installed in customers’ IT environment and is only recommended up to 10k persons. Groups cannot be imported via this way.

Availability: on specific customer request, implementation required.

4) Synchronisation via Web Services API

We offer a REST API to synchronize persons and groups to FACT24. Programming of the interface to your system must be performed by you or the provider of the system to be connected. Setup costs for the web service API and monthly usage fees (included in the FACT24 CIM starter edition) can be found in our price list. Recommended for 1,000 persons and over.

Availability: optional add-on from ENS+ Essential, implementation required.

5) Synchronisation via SCIM

Companies that store their personnel records in Azure Active Directory (now known as Microsoft Entra ID) can easily synchronize this data with the Person list in ENS+. Recommended for 1,000 persons and over.

Availibility: as optional add-on from ENS+ Essential, inclusive for all FACT24 CIM editions.

Details of the SCIM Synchronization

Companies that store their personnel records in Azure Active Directory (now known as Microsoft Entra ID) can easily synchronize this data with the Person list in ENS+. Thanks to this fully automatic synchronization, there is no longer any need for contact data management within ENS+.

SCIM stands for System for Cross-domain Identity Management. It's an open standard designed to make it easier to automate the exchange of user identity information between systems—especially for cloud-based applications and services.

In ENS+, you can decide which person properties you want to import. This can be defined on the 'SCIM Import' page under 'Setup'. 

In the Attriubute mapping you can click on which properties should be synchronized:

With the help of the generated token from ENS+ your Azure administrator needs to connect your Entra ID account with your ENS+ enterprise:

The data synchronization runs automatically based on Azure configurations (default is every 40 minutes). If for any reason the regular synchronization running in the background is interrupted on the ENS+ side, the system will send an email notification to the freely selectable email addresses. In this situation the ENS+ will automatically disable the synchronization which needs to be re-enabled (after fixing the issue) in order for the import to continue.

ENS+ configuration for SCIM Import

Log in with a principal and navigate to the menu `Setup` > `SCIM Import`.

Configure the token, the administrator email address (optional) and enable SCIM Sync.

SCIM field mappings are fixed in ENS+. To configure the attribute mapping, select the fields that you want to synchronize from the SCIM server to ENS+.

These fields must be in sync with the SCIM server configuration.

Go to the `Manage` > `Provisioning` of your Microsoft Entra ID in Azure Active Directory (AAD).

In the `Admin credential` part, configure the credentials that will be used to connect to ENS+:

  • Tenant URL: `<url-of-your-ens-server>/portal/scim/`
  • Secret Token: The token you received on the ENS+ configuration (can be regenerated at any time)

In the `Mapping` part, configure the attribute mapping for `Users`, `Groups` are currently not supported.

Select the fields that you want to synchronize from AAD to ENS+ for `Users`. An example configuration is shown below.

How did we do?

Media Gateway setup for the ENS+ Cloud portal

Contact