Overview
Genea now supports automatic keycard creation from Microsoft Entra ID and Okta using SCIM. This allows your team to manage access credentials from a single source of truth, reducing manual overhead and keeping your access control data consistent.
The following sections provide step-by-step instructions to configure this functionality in Microsoft Entra ID and Okta.
Keycard Creation via Microsoft Entra ID
To create a keycard in the Genea web application using Microsoft Entra ID, follow these steps:
Sign in to the Microsoft Entra ID portal.
Browse to 'Microsoft Entra ID' > 'Enterprise Applications.'
Select Genea SCIM Application.
On the resulting screen, select the 'Provisioning' tab in the left column.
Navigate to 'Attribute Mapping' and select 'Provision Microsoft Entra ID Users'
7. Check the 'Show advanced options' checkbox and select 'Edit attribute list for customappsso'
8. Under 'Edit attribute list for customappsso,' enter the following extended Card Number attribute:
urn:ietf:params:scim:schemas:extension:enterprise:2.0:User:cardNumber
Click 'Save' to update the attribute list.
9. Select 'Add Mapping' to map the Microsoft Entra attribute with the attribute.
You can select any source attribute here; the value entered in that attribute will be treated as a keycard in Genea for the respective user.
Keycard Creation via Okta
Navigate to the 'Provisioning' tab in your Genea Access Control app within your Okta Admin dashboard and click on "Go to Profile Editor."
2. Click 'Add Attribute' to add the card number attribute.
Enter the following External namespace:
urn:ietf:params:scim:schemas:extension:enterprise:2.0:User
3. Once the attributes have been created, it's time for mapping. Click on 'Mappings'.
Click on the 'Okta to Genea Access Control' tab and select the source attribute for the Card Number attribute. Refer below screenshot:
You can select any source attribute here; the value entered in that attribute will be treated as a keycard in Genea for the respective user.
What happens when Genea receives a card number?
When a valid cardNumber is received through SCIM for a user:
A new card is created with Active status with the Default badge type.
If the card number changes in Entra/Okta, the older card will be deleted, and a new one will be created.
Important Note:
Manually created keycards in Genea are not affected if a new keycard is created via Entra/Okta.
Administrators can continue to manually create or manage keycards directly within the Genea portal at any time.
If the card number is removed from Entra ID or Okta, the keycard will not be deleted from Genea. This is because Genea does not receive any deletion calls from Entra/Okta. In such cases, you must manually delete the keycard from the Genea portal.
Similarly, if the attribute mapping is removed in Entra/Okta, the keycard will not be removed from Genea automatically.
Need Help?
If you need help mapping the cardNumber attribute or setting up SCIM, please reach out to Genea Support.







