About SCIM Directory Integration with Microsoft Entra ID
SCIM Directory Integration with Microsoft Entra ID in Iru Endpoint allows you to set up SCIM-based user directory synchronization between Microsoft Entra ID and Iru Endpoint, enabling automatic user and group provisioning and deprovisioning.How It Works
The SCIM integration creates a secure connection between Microsoft Entra ID and Iru Endpoint, enabling automatic synchronization of user and group data. When users or groups are added, modified, or removed in Microsoft Entra ID, these changes are automatically reflected in Iru Endpoint through the SCIM protocol.Prerequisites
- Be sure to review the supported user and group attributes listed in the SCIM Directory Integration article.
- Ensure that nested groups are not included with SCIM as Microsoft does not support this functionality.
- Iru Endpoint
- Microsoft Entra ID
Get the SCIM Token and API URL
Complete these steps in Iru Endpoint first. You will need the SCIM access token and API URL when configuring Microsoft Entra ID. For full details, see the SCIM Directory Integration article.1
Open Integrations
In Iru Endpoint, in the sidebar, click the Account Menu Button, then select Integrations.

2
Discover Integrations
Click Discover integrations in the upper-right of the Integrations page.
3
Add SCIM Protocol
On the SCIM protocol tile, click Add and configure.

4
Start Configuration
Click Get started.
5
Name the Integration
Enter a unique name for the SCIM integration.
6
Generate Authentication Token
Click Generate token. The SCIM integration uses an HTTP authorization header with a Bearer Token.

7
Copy the Token
Click Copy token. The token will not be visible again after you click Done. Store it securely, as you will need it in the Microsoft Entra ID tab.
8
Confirm and Complete Setup
Confirm that you have copied the token by checking the box, then click Done. You will return to the Integrations page.

9
Access Integration Details
Click the ellipsis on the SCIM directory integration you created.
10
View Details
Select View Details.

11
Copy API URL
Copy the SCIM API URL (e.g.
https://subdomain.api.iru.com/api/v1/scim). Your identity provider will require this. The URL displayed in your tenant may still show the api.kandji.io domain. The api.kandji.io version of the SCIM API URL will also work for this purpose.12
Close Details
Click Close.

13
Switch to Microsoft Entra ID Tab
Keep the token and API URL available, then switch to the Microsoft Entra ID tab to create and configure the SCIM app integration.








