Skip to main content

Reconfiguring IAM for Enterprise Managed Users

If the systems you use for IAM change, you can migrate your users to the new configuration by reconfiguring your managed enterprise on GitHub.com.

Who can use this feature?

To manage users in your enterprise with your identity provider, your enterprise must be enabled for Enterprise Managed Users, which is available with GitHub Enterprise Cloud. For more information, see "About Enterprise Managed Users."

Migrating your enterprise to a new identity provider or tenant

If your enterprise will use a new identity provider (IdP) or tenant for authentication and provisioning after you initially configure Security Assertion Markup Language (SAML) or OpenID Connect (OIDC) and SCIM, you can migrate to a new configuration.

Migrating from OIDC to SAML

If you're using OpenID Connect (OIDC) to authenticate members in your enterprise with managed users, you can migrate to SAML SSO.

Migrating from SAML to OIDC

If you're using SAML to authenticate members in your enterprise with managed users, you can migrate to OpenID Connect (OIDC) and benefit from support for your IdP's Conditional Access Policy.