Skip to main content

User Directory Integration

User Directory Integration in Iru Endpoint connects Microsoft Entra ID, Google Workspace, or Okta so Iru Endpoint can sync users and groups and assign those users to device records.

Why Configure a Directory Integration?

Iru Endpoint lets you assign users to specific devices. Using a directory integration to import users allows you to manage your Iru Endpoint user assignment centrally. You can configure automatic device assignment based on your directory settings. Device users in Iru Endpoint can only be created and assigned via a directory integration. To import users, you can connect multiple Google Workspace, Microsoft Entra ID, or System for Cross-Domain Identity Management (SCIM) integrations. Native Microsoft Entra ID and Google Workspace integrations are simple to configure and require only a directory administrator account with access to the directory you are trying to integrate. After the initial user sync, Iru Endpoint will import users and groups every four hours.
If you prefer user accounts be added and removed as they are created within your directory, use a SCIM integration. SCIM requires more upfront configuration but allows for Just-in-Time (JiT) account provisioning and de-provisioning. You can use SCIM with Microsoft Entra ID, Okta, and other directory systems that support it. Refer to SCIM Directory Integration for more information.
When you select Browse all integrations in the upper-right of the Integrations page, the Integrations marketplace lists each integration as a tile. Use the Category filters on the left (Communication, Directory integrations, Asset Management, and Security) to narrow the list. In the upper-right, select the sort button to order tiles by Name (A-Z) or Name (Z-A).

Adding Directory Integrations

Choose the provider you use, then complete that setup:

View Additional Information about a Directory Integration

1

Access Directory Integration

Select the ellipsis on the Directory Integration you would like to view.
2

View Details

Select View details.
Microsoft Entra ID and Google Workspace integrations will show the administrator email account used to connect to the directory and the time of the last import. SCIM integrations will show the Iru Endpoint email used to connect to the directory, the SCIM API URL, and the time of the last sync.

Force a User Directory Sync

Microsoft Entra ID and Google Workspace directories sync automatically every four hours, but you can force an immediate sync. SCIM uses a push mechanism from the cloud directory so it is not necessary to force-sync a SCIM directory integration.
1

Access Directory Integration

Select the ellipsis on the Directory Integration you would like to sync.
2

Sync Users

Select Sync users.

Re-authenticate a Directory Integration

You might need to re-authenticate an existing Microsoft Entra ID or Google directory integration to update credentials, change the account that was used to create the integration, or to update permissions.
1

Access Directory Integration

Select the ellipsis on the Directory Integration you would like to re-authenticate.
2

Re-authenticate

Select Re-authenticate.
3

Complete Authentication

Sign in using a Google Account or Microsoft work or school account with admin access. You will be redirected back to the Integrations page.
For Google Workspace, you must grant every requested permission again. See User Directory Integration with Google Workspace.

Remove a Directory Integration

Removing the integration will remove users not assigned to devices from Iru Endpoint. Users assigned to devices will remain, but Iru Endpoint will no longer synchronize them with the directory.
1

Access Directory Integration

Select the ellipsis on the Directory Integration you would like to delete.
2

Delete Integration

Select Delete integration.
3

Confirm Deletion

Confirm by typing the name of the integration.
4

Complete Deletion

Select Delete.