[IAM] Azure AD is no longer provisioning any new users to IAM

Once you've confirmed that the connection is still active to your Azure AD and that users are still able to login to the BenQ Boards via SSO, follow solution below.

The reason why the IAM may no longer be Auto Provisioning users from your Azure AD is that your Auto Provisioning token may have expired. The default token expiration time is 90 days.

How to delete current Auto provisioning Token

  1. Navigate to BenQ IAM and login with an Admin account.
  2. Go to SSO Settings > SAML > Settings.
  3. Under Automated User Provisioning > Delete. This will delete the existing token.

  4. Click Create Token to recreate the token.



  5. Copy the token. Make sure to store correctly as this will be used in Azure.  


  6. In the Azure portal, on the BenQ IAM application integration page, 
    find the Manage section and select Provisioning.
  7. In the Admin Credentials section, input the token generated in Step 4 
    into the Secret Token field. Click Save.

  8. Confirm that Provisioning is working again. If you're still having issues, please reach out to BenQ TSE or your main BenQ contact.