### Step 1: Navigate to Provisioning configuration {#unleash-setup-step-1}
First you'll need to log in to Unleash as an admin user. Navigate to the Single Sign-On section and select the "SCIM" tab. The SCIM API URL will be shown in this section, you'll need this to configure Okta later.
![Navigate to the SCIM Config](/img/scim-config-1.png)
Enable SCIM by turning on the toggle and keep the token Unleash provides you for the Okta setup below.
![Enable the SCIM toggle](/img/scim-config-2.png)
## Okta Configuration {#okta-setup}
### Step 1: Create an Application in Okta {#okta-setup-step-1}
:::info Note
If you already have SAML SSO configured for Unleash in Okta you can skip to the [next step](how-to-setup-provisioning-with-okta#okta-setup-step-2). If you're planning on using [SAML for Unleash](../how-to/how-to-add-sso-saml), do that first and skip to the next step. Note that if you're using OIDC SSO in Okta you still need to do this step.
This step will create an empty Sign-On Application that will only be used for SCIM.
:::
**1) Navigate to "Admin -> Applications" and click the "Create App Integration" button.**
![Navigate to Create Application](/img/scim-okta-config-1.png)
**2) Select SWA - Secure Web Authentication**
![Select Secure Web Application](/img/scim-okta-config-2.png)
**3) Fill in your App Name and App's login page URL**
Set the email field to map to your login property. This is important and ensures that your SSO integration continues to work.
**2) Remove unneeded properties**
You should remove all unnecessary properties. This ensures that Okta will reach a steady state when synchronizing. The properties that you must retain are: