Supern8n LogoSupern8n

Automate Entra ID to Zammad User Sync for Streamlined Provisioning

Automate user provisioning, updates, and deactivation across Entra ID and Zammad, reducing manual administrative time by up to 90% and eliminating data discrepancies.

Manual user management between Microsoft Entra ID and Zammad causes delays and data inconsistencies. This n8n workflow fully automates user provisioning, updates, and deactivation in Zammad from a specified Entra ID group.

$29
Ready-to-use workflow template
Complete workflow template
Setup documentation
Community support

Documentation

Microsoft Entra ID to Zammad User Synchronization

This n8n workflow provides a robust solution for maintaining accurate user data between Microsoft Entra ID (formerly Azure Active Directory) and Zammad. It automates the creation, updating, and deactivation of Zammad user accounts based on membership in a designated Entra ID group.

Key Features

  • Automated user creation in Zammad for new Entra ID group members.
  • Real-time updates to Zammad user profiles (e.g., name, contact info) when changes occur in Entra ID.
  • Automatic deactivation of Zammad user accounts for users removed from the Entra ID group.
  • Configurable Entra ID group selection for granular control over synced users.

How It Works

The workflow begins by simultaneously fetching all existing Zammad users and all groups from Microsoft Entra ID via the Microsoft Graph API. It then filters the Entra ID groups to identify a specific group (configured by you) whose members are designated for synchronization. Next, it retrieves all user members from this chosen Entra ID group.

Each Entra ID user's data is then transformed into a standardized 'Zammad Universal User Object'. These Entra ID user objects are compared against active Zammad users to determine necessary actions:

  • New users: Entra ID users not found in Zammad are created as new Zammad accounts.
  • Updated users: Users found in both Entra ID and Zammad have their Zammad profiles updated with the latest information from Entra ID.
  • Deactivated users: Zammad users (previously synced from Entra ID) who are no longer members of the designated Entra ID group are automatically deactivated in Zammad. This ensures your Zammad instance accurately reflects current access permissions based on Entra ID group membership.

Workflow Details

Category:DevOps & IT
Last Updated:Dec 16, 2025

Frequently Asked Questions