Security > Provisioning > Using SCIM with ThingWorx > Configure SCIM in the PingFederate Administrative Console
  
Configure SCIM in the PingFederate Administrative Console
* 
A license for PingFederate is available at no extra cost to PTC customers who have an active maintenance agreement or a subscription license for ThingWorx 8.0, ThingWorx Navigate 1.5, and some Windchill releases. For more information, see “PingFederate Software Download” in the PTC Single Sign-on Architecture and Configuration Overview Guide.
The following steps are performed from the PingFederate Administrative Console.
1. Add the LDAP as a Data Store.
2. Configure a Password Credential Validator Instance.
3. Create a New OAuth Client for SCIM.
4. Define an SP Connection for SCIM.
5. Create a Channel to the Directory Service.
For a general overview and additional details, see the Ping Identity Knowledge Center: Outbound provisioning for IdPs
* 
When you have completed the SCIM setup, verify the following settings in the PingFederate Administrative Console.
Navigate to Server Configuration> System Settings > Server Settings.
Roles & Protocols—Ensure the OUTBOUND PROVISIONING role is enabled.
Outbound Provisioning—Here you can review your data store and set the synchronization frequency. For more information, see the Ping Identity Knowledge Center: Configure outbound provisioning settings.