Include Page | ||||
---|---|---|---|---|
|
Info |
---|
Note: To do this operation configure sync with AAD you need to be an admin or application owner within Zilla and AND have admin access with your organization's Azure Active Directory -(AAD) application, specifically |
Login to Azure Active Directory with your admin credentials.
Click
Azure Active Directory
, and from there you will to be redirected to your tenant’s overview page.Save Copy and save the Primary domain for the tenant you want to sync for use in a future later step.
Login to Zilla with your admin credentials.
You will see your Zilla Applications tab, click
Add Application
button at the top right.You will see Add Application screen with Search Library tab. Type
AAD
aad as search text, and clickAdd to Applications
button on the right side of the Azure Active Directory entry.Fill in the form with appropriate details and click
Add to Applications
button.The AAD instance will be added to your Applications, click the Azure Active Directory application name.
You will see a detailed application instance page. Click
Sync now
in the top right corner.A dialogue appears, enable API Integration.
Upon enabling the API Integration more customization options appear.
AAD tenant's domain name
- Fill in the domain name saved from inStep 3
.Sync All Accounts? ( Yes/No )
-Yes
will sync all of your organization’s users,No
will sync only users who have any roles assigned to them . Users and users without any roles will not be synced. By default, the value is Default value:Yes
.Sync All Groups? ( Yes/No )
-Yes
will sync all groups from Azure Active Directory if provided, otherwise,No
will only sync security-enabled groups are synced. By default, the value is . Default value:No
.Comma-separated attributes that identify a user
- Provide an AAD-specific attribute (e.g., job title, department, etc) for which you want to sync AAD users. For example, if you specify a department, only accounts that have a defined department will be imported.Auto Discover Azure Cloud subscriptions? (Yes/No)
-Yes
allows you to will auto-discover all the Azure Cloud subscriptions , by default the value is and create application instances for them in Zilla. Default value:No
.Auto Sync discovered subscriptions? (Yes/No )
-Yes
allows will automatically sync the auto-discovered subscriptions to be automatically synced when the parent is synced, by default the value isNo
. This value should be set toNo
ifAuto Discover Azure Cloud subscriptions? (Yes/No)
is set toNo
. Default value:No
.Click
Sync Now
.Click
Next
.You will be taken to the
Microsoft
site where you need to log in with the a user with the Admin (Global administrator
) role for AAD and grant consent on behalf of the organization.The consent screen will look like the image below when
Auto Discover Azure Cloud subscriptions? (Yes/No)
is set toYes
.The consent screen will look like the image below when
Auto Discover Azure Cloud subscriptions? (Yes/No)
is set toNo
.Click
Accept
. On successful OAuth, you will be redirected to Zilla withSync in progress...
message for newly added AAD application instance.On successful sync, you will see the following notification:
...