Entra ID (Azure AD)
Last updated
Last updated
, formerly known as Azure Active Directory, is an identity service that provides SSO and authentication.
Integrating Cortex with Entra ID allows you to:
Automatically discover and track Entra ID teams and team memberships
Track ownership of entities
Create that track progress and drive alignment on projects involving your Entra ID teams
Follow Microsoft's documentation to .
In your Entra ID admin center, navigate to your new application, and then to API Permissions. Add the following permissions:
Microsoft APIs > Microsoft Graph > Application permissions > User > User.Read.All
Microsoft APIs > Microsoft Graph > Application permissions > Group > Group.Read.All
Click Grant Admin Consent to grant permissions for all accounts in the directory.
Navigate to Certificates & secrets and click New client secret.
Note that you will need to rotate the secret before the expiration date you set for it.
Navigate to the application's Overview page and copy the client ID. You will need the client ID and secret in the next steps.
In Cortex, click your avatar in the lower left corner, then click Settings.
Under "Integrations", click Azure Active Directory.
Click Add configuration.
Configure the integration form:
Client ID and Client secret: Enter the client ID and secret you generated in the previous steps.
Click Save.
You will be redirected to the Azure Active Directory settings page in Cortex, where you can optionally set a group filter to limit which groups are pulled in from Entra ID.
The group name is case-sensitive and should be exactly the same as in Entra ID.
Under Catalogs > Teams, you will see teams and team members pulled in from Entra ID.
If you have ownership of entities set up, then Azure AD teams and users will be listed in the Owners page for an entity.
With the Entra ID integration, you can create Scorecard rules and write CQL queries based on Entra ID teams.
Cortex conducts an ownership sync every day at 6 a.m. UTC.
Why were all my Entra ID users unexpectedly deleted after rotating my client secret?
Updating your configuration can cause a temporary deletion of users. When you delete the old secret from your Azure AD configuration in Cortex, a sync is triggered to delete the users. The addition of the new secret to your configuration will trigger a sync to add the users. There may be a delay before seeing the users re-added.
The following options are available to get assistance from the Cortex Customer Engineering team:
Chat: Available in the Resource Center
Slack: Users with a connected Slack channel will have a workflow added to their account. From here, you can either @CortexTechnicalSupport or add a :ticket:
reaction to a question in Slack, and the team will respond directly.
Don’t have a Slack channel? Talk with your Customer Success Manager.
In Cortex, navigate to the :
Tenant ID: Enter your Entra ID .
See the for instructions on importing entities.
See more examples in the in Cortex.
Email: , or open a support ticket in the in app Resource Center