---
title: "PATCH /api/v1/secret-syncs/azure-entra-id-scim/{syncId}"
method: PATCH
path: "/api/v1/secret-syncs/azure-entra-id-scim/{syncId}"
tags: ["Secret Syncs"]
---

# PATCH /api/v1/secret-syncs/azure-entra-id-scim/{syncId}

`PATCH /api/v1/secret-syncs/azure-entra-id-scim/{syncId}`

Update the specified Azure Entra ID SCIM Sync.

## Path parameters

- `syncId` string, uuid, required

## Request body

- object
  - `name` string — The updated name of the Azure Entra ID SCIM Sync. Must be slug-friendly.
  - `connectionId` string, uuid — The updated ID of the Azure Entra ID Connection to use for syncing.
  - `description` string, nullable — The updated description of the Azure Entra ID SCIM Sync.
  - `environment` string — The updated slug of the project environment to sync secrets from.
  - `secretPath` string — The updated folder path to sync secrets from.
  - `isAutoSyncEnabled` boolean — Whether secrets should be automatically synced when changes occur at the source location or not.
  - `syncOptions` object — Optional parameters to modify how secrets are synced.
    - `initialSyncBehavior` 'overwrite-destination', required — Specify how Infisical should resolve the initial sync to the Azure Entra ID SCIM destination.
    - `keySchema` string — Not supported for Azure Entra ID SCIM syncs.
    - `disableSecretDeletion` false — Not supported for Azure Entra ID SCIM syncs.
    - `secretKey` string — The key of the Infisical secret whose value will be used as the SCIM provisioning token.
  - `destinationConfig` object
    - `servicePrincipalId` string, uuid, required — The Object ID of the Azure Entra ID Enterprise Application service principal to sync the SCIM token to.
    - `servicePrincipalDisplayName` string — The display name of the Azure Entra ID Enterprise Application service principal.

## Response `200`

Default Response

- object
  - `secretSync` object, required
    - `id` string, uuid, required
    - `name` string, required
    - `description` string, nullable
    - `isAutoSyncEnabled` boolean
    - `version` number
    - `projectId` string, required
    - `folderId` string, uuid, nullable
    - `connectionId` string, uuid, required
    - `createdAt` string, date-time, required
    - `updatedAt` string, date-time, required
    - `syncStatus` string, nullable
    - `lastSyncJobId` string, nullable
    - `lastSyncMessage` string, nullable
    - `lastSyncedAt` string, date-time, nullable
    - `importStatus` string, nullable
    - `lastImportJobId` string, nullable
    - `lastImportMessage` string, nullable
    - `lastImportedAt` string, date-time, nullable
    - `removeStatus` string, nullable
    - `lastRemoveJobId` string, nullable
    - `lastRemoveMessage` string, nullable
    - `lastRemovedAt` string, date-time, nullable
    - `syncOptions` object, required — Optional parameters to modify how secrets are synced.
      - `initialSyncBehavior` 'overwrite-destination', required — Specify how Infisical should resolve the initial sync to the Azure Entra ID SCIM destination.
      - `keySchema` string — Not supported for Azure Entra ID SCIM syncs.
      - `disableSecretDeletion` false — Not supported for Azure Entra ID SCIM syncs.
      - `secretId` string, uuid — The ID of the Infisical secret whose value will be used as the SCIM provisioning token.
    - `connection` object, required
      - `app` 'azure-entra-id', required
      - `name` string, required
      - `id` string, uuid, required
    - `environment` object, nullable, required
      - `slug` string, required
      - `name` string, required
      - `id` string, uuid, required
    - `folder` object, nullable, required
      - `id` string, required
      - `path` string, required
    - `destination` 'azure-entra-id-scim', required
    - `destinationConfig` object, required
      - `servicePrincipalId` string, uuid, required — The Object ID of the Azure Entra ID Enterprise Application service principal to sync the SCIM token to.
      - `servicePrincipalDisplayName` string — The display name of the Azure Entra ID Enterprise Application service principal.

## Other responses

- `400` — Default Response
- `401` — Default Response
- `403` — Default Response
- `404` — Default Response
- `422` — Default Response
- `500` — Default Response

---

[API](https://skmtc.net/infisical/apis/infisical-api.md) · [All operations](https://skmtc.net/infisical/apis/infisical-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/infisical/infisical-api/versions/885aef3e6c11/schema)
