Prerequisites
Before you begin, ensure you have:- JumpCloud Administrator access
- Permissions to create service accounts and custom admin roles in JumpCloud
Setup guide
Create service account in JumpCloud
1
Access JumpCloud Admin Console
Log in to your JumpCloud Admin Console
2
Navigate to service accounts
Go to Settings > Service Accounts (or User Authentication > Service Accounts depending on your console version)
3
Create a new service account
- Click Create Service Account
- Enter a name (e.g., “Ravenna”)
- Create a custom admin role with the following permissions:
- Full User Management
- Full Group Management
- Device Management (Devices & Mobile Device Management)
- Assign the custom role to the service account
- Save the service account
4
Generate client credentials
- Select the service account you created
- Generate a Client ID and Client Secret
- Copy both values
For more details, see JumpCloud’s service account documentation
Add integration in Ravenna
1
Navigate to integrations
Go to Settings > Integrations
2
Select JumpCloud
Find JumpCloud in the available integrations and click Connect
3
Select Service Account method
Select Service Account as your authentication method
4
5
Complete setup
Click Add JumpCloud to complete the integration. Ravenna will validate your credentials and begin syncing users and groups.
Troubleshooting
Invalid credentials error
Invalid credentials error
Cause: Client ID or Client Secret is incorrect.Solution:
- Verify the Client ID and Client Secret are copied correctly
- Ensure there are no extra spaces or characters
- Confirm the service account is still active in JumpCloud
Insufficient permissions error
Insufficient permissions error
Cause: The service account lacks the required permissions.Solution:
- Verify the custom admin role includes Full User Management, Full Group Management, and Device Management
- Check that the role is assigned to the service account
- See JumpCloud’s custom admin roles documentation for help configuring roles
Users or groups not syncing
Users or groups not syncing
Cause: Sync may still be in progress or the service account has limited scope. When the service account can’t read a resource (users, groups, or applications), Ravenna keeps the integration connected and syncs that resource as empty rather than failing.Solution:
- Allow a few minutes for the initial sync to complete
- Verify the integration status shows as connected in Settings > Integrations
- Check that users and groups exist in the JumpCloud organization linked to your credentials
- Confirm the custom admin role grants read access to each resource type you expect to see, then trigger a resync from the integration page