Configure Adobe auto-provisioning  |  Advanced  |  Google Workspace Help Skip to main content Advanced Documentation Administrators Getting started Apps and integrations Set up and manage services Billing and subscriptions Data migration Data synchronization Device management Domain management Reports and monitoring Security and data protection User management Legal and compliance Support and troubleshooting Users Calendar Chat Cloud Search Gmail Groups Docs, Forms, Sheets, and Slides Drive Keep Meet Meet Hardware Sites Vids Developers Apps Script Marketplace Workspace APIs Training & business user guides Workspace Learning Center Google Skills Community Communities Workspace Admin Community Workspace Developers Community Support / English Deutsch Español – América Latina Français Indonesia Italiano Nederlands Polski Português – Brasil Svenska Tiếng Việt Türkçe Русский עברית العربيّة فارسی हिंदी বাংলা ภาษาไทย 中文 – 简体 中文 – 繁體 日本語 한국어 Sign in Administrators User management Advanced Admin console Contact us Overview Guides Advanced Overview Guides Documentation More Community More Support Users and devices About user and device policies How the organizational structure works Organizational policies FAQ Manage organizational units Add an organizational unit Move users to an organizational unit Move a ChromeOS device to an organizational unit Move, rename, or delete an organizational unit Control user access Manage user access to services Turn a service on or off Turn an additional service on or off Turn Applied Digital Skills on or off Turn AppSheet on or off Turn Apps Script on or off Turn Calendar on or off Turn Campaign Manager on or off Turn Chrome Web Store on or off Turn Classroom on or off Turn Cloud Search on or off Turn Early Access apps on or off Turn Google Flow on or off Turn Forms on or off Turn Google Ad Manager on or off Turn Google Alerts on or off Turn Google Books on or off Turn Google Drive and Docs on or off Turn Google Home on or off Turn Google Voice on or off Turn Google Workspace LTI™ on or off Turn Groups for Business on or off Turn Keep on or off Turn Data Studio on or off Turn Merchant Center on or off Turn Gemini Notebook on or off Turn Play Books Partner Center on or off Turn Programmable Search Engine on or off Turn Read Along on or off Turn Scholar Profiles on or off Turn Search Ads 360 on or off Turn Sites on or off Turn Socratic on or off Turn Studio on or off Turn Tasks on or off Turn Vids on or off Turn Workspace Studio on or off View which apps are turned on Choose when users get new features Turn new services on or off by default Add a paid subscription Change service settings Customize service access Customize service settings Save & manage search activity Let users' Assistants access Google Workspace Other user management tasks Download a list of users Manage Workspace guests Overview Update guest directory settings Update Workspace Guest organizational unit settings Troubleshoot guest accounts Automated user provisioning About automated user provisioning Monitor automated user provisioning View auto-provisioning errors Provisioning guides for apps 15Five Adobe Amazon Web Services Asana Atlassian Cloud Bonusly Boomi Box Canva Comeet Deskpro Dialpad Dialpad Sandbox Docusign Dropbox Business Emburse Eptura Visitor (formerly Proxyclick) Evernote Business Federated Directory Figma Foodee Freshdesk Front Fuze GoToMeeting Hootsuite HubSpot Huddle Keeper Klipfolio Kudos Lucidchart LumApps Miro Monday Notion Office 365 OfficeSpace Omnissa PayPal Honey RECOG RingCentral Office Rollbar Salesforce Salesforce Sandbox SAP Cloud Platform Identity Authentication ScreenSteps Slack Smartsheet SpaceIQ Spoke SugarCRM ThousandEyes Trello Workplace from Facebook Zendesk Zscaler Administrators Getting started Apps and integrations Set up and manage services Billing and subscriptions Data migration Data synchronization Device management Domain management Reports and monitoring Security and data protection User management Legal and compliance Support and troubleshooting Users Calendar Chat Cloud Search Gmail Groups Docs, Forms, Sheets, and Slides Drive Keep Meet Meet Hardware Sites Vids Developers Apps Script Marketplace Workspace APIs Training & business user guides Workspace Learning Center Google Skills Communities Workspace Admin Community Workspace Developers Community Google Workspace Help Administrators User management Advanced Guides Send feedback Configure Adobe auto-provisioning Stay organized with collections Save and categorize content based on your preferences. You can set up automated user provisioning (autoprovisioning) so that any changes you make to user accounts in Google Workspace are automatically synced with this third-party app. Automated user provisioning operates only on active, suspended, or deleted users. It doesn't include archived users. Before you begin: Set up SSO for this app Get the API access token for the Adobe application Sign in to your Adobe Admin Console. Under Settings Identity, click the directory linked to your Google account. On the Settings page for linked directory, go to the Sync tab. Click Go to Settings. On the Edit sync settings page, click Sync setup. On the Configure Sync page, copy and save the Secret Token and the Endpoint URL. Set up auto-provisioning for the Adobe application In the Google Admin console, go to Menu Apps Web and mobile apps. Go to Web and mobile apps Requires having the Mobile Device Management administrator privilege. Open the Adobe application. In the Auto-provisioning section, click Configure auto-provisioning. Paste the API access token you copied from Adobe. Click Continue. Enter the endpoint URL you copied from Adobe. Click Continue. Verify that all mandatory Adobe attributes (those marked with an *) are mapped to Google Cloud Directory attributes. For optimal license management, Adobe also recommends mapping the Organization unit path attribute to: urn:ietf:params:scim:schemas:extension:Adobe:2.0:User.organizationalUnit Organizational Units are represented as User Groups in the Adobe Admin Console. Click Continue. (Optional) Restrict provisioning to specific groups: Enter all or part of a group name in the Search groups field. A list of available groups appears. Select a group to add it and open a new search field. If necessary, add more groups and choose a scope. To remove any group you added, click next to it. Once you're done, click Continue. Choose how long deprovisioning actions should be delayed before taking effect. The amount of time before deprovisioning takes effect can be set to: within 24 hours or after one, 7, or 30 days. Select at least one of these options: When an app is turned off for the user, suspend their account after [number of days]. When a user is suspended on Google, suspend their account after [number of days]. When a user is deleted from Google, suspend their account after [number of days]. Click Finish. In the Auto-provisioning section, click the activation slider. Note: The activation slider is disabled if Adobe isn't turned on for any users. Click User access and turn the app on to enable the slider. In the confirmation dialog box, click Turn on. Display auto-provisioning Once provisioning is on, Google starts collecting usage information. You'll see the usage information in the Auto-provisioning section. There won't be any numbers next to the event names until you enable provisioning. The following event names provide the usage information for the last 30 days: Users created Users suspended Users deleted Failures For more information, see Monitor automated user provisioning. Edit provisioning scope You may want to restrict the scope of provisioning to members of groups you define. In the Google Admin console, go to Menu Apps Web and mobile apps. Go to Web and mobile apps Requires having the Mobile Device Management administrator privilege. Open the Adobe application. Click the Auto-provisioning section to open the settings page. Under Provisioning scope, click Edit. Enter all or part of a group name in the Search groups field. A list of available groups appears. Select a group to add it and open a new search field. If necessary, add more groups and choose a scope. To remove any group you added, click next to it. If a group has users from a secondary domain or from outside the organization, those users are not provisioned. Once you're done, click Update. The next time you edit provisioning scope, the groups you added appear in the Provisioning scope window. If you turned on the Adobe application for a set of organizational units, the provisioning scope is restricted to those users in the added groups who are also members of those organizations. Deactivate auto-provisioning To disable auto-provisioning for the Adobe application without losing all the configuration information: In the Google Admin console, go to Menu Apps Web and mobile apps. Go to Web and mobile apps Requires having the Mobile Device Management administrator privilege. Open the Adobe application. Do one of the following: In the Auto-provisioning section, click the activation slider. Click the Auto-provisioning section to open the settings page, then click Status Turn off. In the confirmation dialog box, click Turn off. Define deprovisioning time frames To define how long deprovisioning actions should be delayed before taking effect: In the Google Admin console, go to Menu Apps Web and mobile apps. Go to Web and mobile apps Requires having the Mobile Device Management administrator privilege. Open the Adobe application. Click the Auto-provisioning section to open the settings page. Under Deprovisioning, click Edit. Choose how long deprovisioning actions should be delayed before taking effect. The amount of time before deprovisioning takes effect can be set to: within 24 hours or after one, 7, or 30 days. Select at least one of these options: When an app is turned off for the user, suspend their account after [number of days]. When a user is suspended on Google, suspend their account after [number of days]. When a user is deleted from Google, suspend their account after [number of days]. Click Update to save your edited deprovisioning configuration. Remove auto-provisioning To disable auto-provisioning for the Adobe application and remove all the configuration information: In the Google Admin console, go to Menu Apps Web and mobile apps. Go to Web and mobile apps Requires having the Mobile Device Management administrator privilege. Open the Adobe application. Click the Auto-provisioning section to open the settings page. Under Delete configuration, click Delete. Click Delete to both deactivate auto-provisioning and remove all the configuration information. Existing users on Adobe will not be deprovisioned. Important: If automatic provisioning stops and you need to reauthorize the application If the admin password for Adobe has changed, automatic provisioning will stop working. In this case, the original authorization is revoked by Adobe, and you must reauthorize automatic provisioning. Follow the steps in Get the API access token for the Adobe application, above, to get a new access token from Adobe. In the Google Admin console, go to Menu Apps Web and mobile apps. Go to Web and mobile apps Requires having the Mobile Device Management administrator privilege. Click the Adobe application. Click the Auto-provisioning section to open the settings page. Under App authorization, click Reauthorize. Enter your Adobe access token, then click Re- authorize. After reauthorization completes, you're returned to the Auto-provisioning settings page in the Admin console. Note: Your third-party application might revoke authorization for reasons other than the admin password changing. These reasons can include account inactivity, for example. Check with the documentation for the third-party application for scenarios in which authorization can be revoked. Google, Google Workspace, and related marks and logos are trademarks of Google LLC. All other company and product names are trademarks of the companies with which they are associated. Send feedback Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates. Last updated 2026-07-17 UTC. Need to tell us more? [[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Missing the information I need","missingTheInformationINeed","thumb-down"],["Too complicated / too many steps","tooComplicatedTooManySteps","thumb-down"],["Out of date","outOfDate","thumb-down"],["Samples / code issue","samplesCodeIssue","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2026-07-17 UTC."],[],[]] Try Google Workspace Boost your productivity with AI at no cost Admin Community Get answers from industry peers and experts Customer Care Learn about support options and services Documentation & training Help Centers Developer guides Learning Center Google Skills Tools Admin console Apps Script Dashboard Google Cloud console Support Admin Community Developers Community Customer Care Terms Privacy Manage cookies English Deutsch Español – América Latina Français Indonesia Italiano Nederlands Polski Português – Brasil Svenska Tiếng Việt Türkçe Русский עברית العربيّة فارسی हिंदी বাংলা ภาษาไทย 中文 – 简体 中文 – 繁體 日本語 한국어