Transferring Groups and the Users who belong to them is one of the first steps in configuring your Metric Insights instance.
Please refer to this step-by-step guide to proceed through the user onboarding process smoothly.
Create or Sync Groups
There are two main ways to manage Groups in MI. Determine which approach best suits your needs:
Metric Insights allows you to create Groups manually. This functionality is available to Administrators and Power Users with appropriate access rights granted.
Metric Insights uses a specialized script to automatically synchronize Groups and Users from Active Directory or another identity and access management platform with the instance. The script creates all the designated Groups that exist in the user management tool, then creates all the User accounts that correspond to those Groups.
NOTE: Depending on your organization's user management strategy, you can combine different tools. For example, you can bring in groups using LDAP and then populate them with users using SCIM.
Select the content management tools your organization uses:
Please refer to the Syncing Groups and Users from LDAP/AD Using 'mi-ldap-usersync' Script article.
Please refer to the Syncing Groups and Users from Okta SAML Using 'mi-okta-usersync' Script article.
Please refer to the Syncing Groups and Users from Office 365 Groups Using 'mi-o365-usersync' Script article.
SCIM is the recommended approach for user onboarding. It reduces MI's burden for maintaining sync configuration.
Please refer to the Syncing Users and Groups with SCIM via Microsoft Entra article.
NOTE: Microsoft Entra ID does not support provisioning Groups only — user members must be included. Creating empty groups via SCIM is technically possible but unlikely in practice.
First Sign-In Authentication
In Metric Insights, User accounts can also be created upon first successful login. Once you configure the authentication method, Users will be able to log into the Metric Insights instance using the same credentials they use for other tools within your organization.
This feature can be used either separately or after synchronizing Groups and Users from an identity and access management platform.
Select the authentication method that best suits your organization:
Please refer to the SAML Single Sign-On (SSO) article.
Please refer to the Configuring LDAP Authentication article.
Please refer to the Using Google Account Authentication article.
Please refer to the Trusted Server Authentication article.
Please refer to the Configuring Metric Insights to Use OpenID Connect article.
Metric Insights allows you to create and assign new Users to Groups upon their initial login via SSO using a custom script. Please refer to the Assign New Users to Groups Upon Creation by Running a Script article.