Zoho One Provisioning – Automating User Account Creation Across Applications

Configuring Provisioning in Zoho One

Provisioning in Zoho One controls how user accounts are created within individual Zoho applications when a user is granted access. Rather than requiring administrators to manually set up accounts in every application separately, provisioning automates this process, creating the necessary accounts in the background as soon as access is assigned through Zoho One.

How Provisioning Works

When an administrator assigns an application to a user in Zoho One and provisioning is enabled for that application, Zoho One will automatically create an account for that user within the application using their Zoho One profile data. This means the user can immediately log in to the application via Single Sign-On (SSO) without needing a separately created account. Similarly, when access is revoked, deprovisioning can automatically deactivate or remove the user's account within the application.

Accessing Provisioning Settings

Sign in to Zoho One as an administrator and open the Admin Panel. Navigate to Applications and select the specific application you want to configure. Within the application management page, look for the Provisioning tab or section.

Configuring Provisioning for an Application

  1. Open the application's settings. Navigate to the application within the Admin Panel and select the Provisioning section.
  2. Enable provisioning. Toggle provisioning on. For applications that support it, you may choose between automatic provisioning (accounts created immediately on assignment) or on-demand provisioning (accounts created on first login).
  3. Map user attributes. Configure how Zoho One user profile fields (such as name, email, department, and designation) map to the corresponding fields in the target application. This ensures user accounts are created with the correct information.
  4. Configure deprovisioning. Decide what should happen when access is revoked: options typically include deactivating the account within the application, or removing it entirely. Choose the option that aligns with your data retention and offboarding policies.
  5. Save and test. Save the configuration and test it by assigning the application to a test user to confirm that provisioning creates the expected account correctly.

SCIM Provisioning

For third-party applications that support the SCIM (System for Cross-domain Identity Management) standard, Zoho One can provision and deprovision users automatically via SCIM APIs. This is configured through the application's provisioning settings by entering the SCIM endpoint URL and authentication token provided by the third-party application.

Note: Not all Zoho applications support automatic provisioning from Zoho One. For applications without provisioning support, users will need to sign in with their Zoho credentials via SSO, but their application-level account may need to be created manually within that application.
Need help? 1 Cloud Consultants can help you configure provisioning across your Zoho One applications to streamline user onboarding and offboarding processes. Book a discovery call with 1 Cloud Consultants.