...
Upon enabling the API Integration more customization options appear. Information is given for each configuration field below the screenshot.
...
AAD tenant's domain name*
- This is a required field. Fill in the domain name saved above under Prerequisites section.Sync All Groups data? (Yes/No)*
- This is a required field. This controls the overall behavior as to whether or not sync any groups data. The default value isYes
. When set toNo
, Zilla will not sync all groups from Entra ID,No
will only sync security-enabled groups. Default value:No
.any group details from Graph.Sync Security Enabled Groups Only? (Yes/No)*
- This is a required field. The default value isYes
and Zilla will sync only Security Enabled Groups. When set toNo
, Zilla will sync all the groups provided the above fieldSync Groups data
is set toYes
.Comma-separated attributes that identify a user
- Provide an Entra ID specific attribute (e.g.,employeeId
,jobTitle
,department
, etc) for which you want to sync Entra ID users. For example, if you specify department, only accounts that have a defined department will be imported. If multiple attributes are specified, all accounts having at least one of the attributes defined will be imported. Be sure to refer to this document before entering the attribute, otherwise all the accounts will be marked asService
if the attribute does not match with what is specified in the document.Auto Discover Azure Cloud subscriptions? (Yes/No)*
- This is a required field.Yes
will auto-discover all the Azure Cloud subscriptions and create application instances for them in Zilla. Default value:No
.Auto Sync discovered subscriptions? (Yes/No)*
- This is a required field.Yes
will automatically sync the auto-discovered subscriptions when the parent is synced. This value should be set toNo
ifAuto Discover Azure Cloud subscriptions? (Yes/No)
is set toNo
. Default value:No
.Enable account modifications? (Yes/No)
-Yes
will automatically revoke group memberships, group ownerships and permissions that have been flagged for revocation after an access review during a sync. Note: This setting is only available if Account Modifications are enabled in the tenant Settings.Sync last login? (Yes/No)
-Yes
will bringlastLogin
for a user activity of users. DefaultNo
.
Info |
---|
Note for syncing Last login:
|
Comma separated custom select fields (e.g., country, id)
- This configuration allows you to retrieve additional fields from Microsoft Entra ID by specifying a comma-separated list of field names. For example, you can input "city, officeLocation" to retrieve the city and office location field. For more info refer this https://learn.microsoft.com/en-us/graph/query-parameters?tabs=http#select-parameter.Enable account modifications? (Yes/No)*
- This is a required field.Yes
will automatically revoke group memberships, group ownerships and permissions that have been flagged for revocation after an access review during a sync. Note: This setting is only available if Account Modifications are enabled in the tenant Settings.
Click
Sync Now/Next
.In the next pop-up, click
Next
.
...