Microsoft Entra ID
Directory integration
Connect NIM with Microsoft Entra ID to automate data synchronization and operational workflows across your environment.
Connect NIM to Microsoft Entra ID with the Configuration Wizard or a certificate-authenticated app registration, then test the connection and collect current directory data before enabling automation.
At a glanceDirect link to At a glance
NIM connects to Microsoft Entra ID to collect directory data and automate supported identity operations. The Configuration Wizard is the recommended path: it creates the Entra ID app registration, applies the required Microsoft Graph application permissions, and configures certificate authentication.
Use the manual path only when your organization needs to create or manage the app registration outside NIM. In that case, you need the application client ID, directory tenant ID, a public .cer certificate uploaded to Entra ID, the matching .pfx certificate in NIM, and tenant-wide admin consent for the selected Microsoft Graph permissions.
Verify success: Save the system and select Test Connection. A success message confirms that NIM can authenticate to Entra ID; then collect the system and confirm the required tables contain current data.
Solutions this integration supportsDirect link to Solutions this integration supports
Account lifecycle management
Create and maintain directory accounts from trusted identity data.
- Automates joiner, mover, and leaver changes
- Keeps account data current
Group and membership control
Manage group membership and access relationships with NIM workflows.
- Supports role-based access
- Reduces manual group administration
Directory data quality
Keep directory attributes and organizational structure aligned with source data.
- Improves downstream accuracy
- Makes auditing easier
Repeatable administration
Apply consistent directory processes at scale.
- Reduces operational effort
- Standardizes execution
Configuration and extension guidesDirect link to Configuration and extension guides
Connector repository
Browse the Microsoft Entra ID connector repository on GitHub.
Supported operationsDirect link to Supported operations
Filter tables by supported operation
Showing 33 of 33 tables| Table | Read | Create | Update | Delete |
|---|---|---|---|---|
| administrativeUnit_members | ||||
| administrativeUnits | ||||
| auditLogs_signIns | ||||
| auth_emailMethods | ||||
| auth_externalMethods | ||||
| auth_fido2Methods | ||||
| auth_microsoftAuthenticatorMethods | ||||
| auth_phoneMethods | ||||
| auth_platformCredentialMethods | ||||
| auth_softwareOathMethods | ||||
| auth_temporaryAccessPassMethods | ||||
| auth_WindowsHelloForBusinessMethods | ||||
| bitlocker_recoveryKeys | ||||
| bitlocker_recoveryKeys_keys | ||||
| devices | ||||
| devices_localCredentials | ||||
| devices_localCredentials_credentials | ||||
| devices_registeredOwners | ||||
| groups | ||||
| license_members | ||||
| license_productPrices | ||||
| licenses | ||||
| mailboxSettings_automaticRepliesSettings | ||||
| members | ||||
| owners | ||||
| report_M365AppUserDetail | ||||
| report_office365ActiveUserDetails | ||||
| report_teamsUserActivityUserDetail | ||||
| report_userRegistrationDetails | ||||
| risky_users | ||||
| teams | ||||
| teams_userConfigurations | ||||
| users |