Configuration Parameters

This section contains the information that this connector uses to connect and interact with the application. Each application type requires different information to create and maintain a connection.

The Microsoft Entra ID connector uses the following connection parameters:

Note
Attributes marked with an asterisk (*) are mandatory.

Connector Credentials

Applicable only if Grant Type is selected as SAML Bearer Assertion

Applicable only if Grant Type is selected as Refresh Token/Auth Code

Applicable only if Grant Type is selected as JWT Certificate Credentials

Additional Configuration

Important

This instance of IQService is configured to listen on a TLS port by default to improve security and safeguard your environment. To establish a secure connection, ensure to follow the following steps:

  • Enable the TLS configuration flag in your application.

  • Refer to the Configuring TLS and Client Authentication for IQService page for detailed instructions on configuring TLS for IQService, including client authentication.

Ensuring proper TLS configuration is crucial for maintaining the security of your IQService deployment.

Note

  • For more information on filters, refer to the Supported query options section of the Azure AD Graph API Concepts document.

  • The Azure API does not support advanced query filters (NOT, ENDSWITH, and NE) with the expanded manager attribute in the URL. Remove the manager attribute from the account schema and remove the owners attribute from the groups schema while using the advanced filters.

  • When using the advanced filters you must add the supportsAdvancedAccountFilter attribute to the application Debug page. For more information, refer to Additional Configuration Parameters.

Applicable only if Manage Exchange Onlineis selected

Note
To enable native before/after script execution for provisioning requests, configure IQService Host and IQService Port parameters. For more information on enabling the Client Authentication and TLS communication, see IQService.