Use this if
BlackShield gives tenant admins a concrete identity surface: configure Google, Okta, or Azure AD, validate OIDC before enabling it, map groups to roles, rotate SCIM tokens, and review identity audit activity.
BlackShield gives tenant admins a concrete identity surface: configure Google, Okta, or Azure AD, validate OIDC before enabling it, map groups to roles, rotate SCIM tokens, and review identity audit activity. Audience: IT admins, security operations teams, workspace owners, and procurement reviewers validating access control. Typical setup time: 15-20 minutes.
BlackShield gives tenant admins a concrete identity surface: configure Google, Okta, or Azure AD, validate OIDC before enabling it, map groups to roles, rotate SCIM tokens, and review identity audit activity.
Step 1
The product supports a defined set of providers and makes admins validate the configuration before broad rollout.
What success looks like
Choose the default role and auto-link behavior explicitly instead of relying on implicit defaults.
Step 2
BlackShield exposes the lifecycle controls buyers usually ask for in enterprise reviews.
What success looks like
Use the identity audit stream to review recent OIDC and SCIM activity for the workspace.
Step 3
Access control is not complete unless you can remove both user access and service credentials quickly.
What success looks like
If OIDC is not configured, manually manage user provisioning via the 'Invite User' option in `/tenant-rights` to invite team members and monitor seat utilization.