Skip to main content

Microsoft Entra ID

J
Written by Johan Åkerman

Prerequisite: Third-party connectors are available only on the Sana Enterprise tier, with one exception: the Workday connector is included for both Sana Core and Sana Enterprise.

Introduction

Connect Microsoft Entra ID to Sana to look up users, view profiles and managers, list and search groups, manage group membership, and create, update, or delete groups directly from Sana.

In summary, the connector has the following key characteristics:

  • Category: Identity

  • Connector type: Real-time

  • Auth type: OAuth

  • Hosting type: Managed

Capabilities

This connector is able to do the following:

Capability

List users

Get user profiles

Get managers

Search groups

List organization groups

Create groups

Update groups

Update group members

Tools

While the capabilities above describe what the connector can do at a high level, the underlying tools show exactly which operations the agent can use when you ask Sana about Microsoft Entra ID. In practice, the agent may call one or more tools to achieve a single capability.

Tool

Add member to group

Create group

Delete group

Get manager

Get ms365 groups

Get organization groups

Get organization users

Get profile

Remove member from group

Search groups

Update group

Update user

Note: This article lists the connector's full set of tools. Your workspace owner can disable individual tools for your workspace, so some of those listed here may not be available to your agents. If a tool you expected is missing, reach out to your workspace owner.

Scope and permissions

This connector uses OAuth. When you connect your account, you will need to sign into your account and grant the required permissions:

Scope

Purpose

User.Read

Read your basic account info and sign you in.

email

View the email addresses on your account.

offline_access

Stay connected and refresh access when you're offline.

openid

Verify your identity when signing in with Entra ID.

profile

View your basic profile details (name, picture, etc.).

Directory.ReadWrite.All

Read and update directory data across the tenant (admin consent).

Group.ReadWrite.All

Read and manage Microsoft 365 groups in the directory (admin consent).

User.ReadWrite

Read and update user profile information.

Set up instructions

Prerequisites:

  • You are a Sana Enterprise user – all third-party connectors except the Workday connector are available only for users on the Sana Enterprise tier.

  • Your Sana workspace owner has enabled this connector – if the workspace owner has disabled the connector it won't appear in the list of available connectors.

Step 1: Go to the connectors page in Sana

In Sana, click on your profile icon and name in the bottom left corner and select Connectors.

Step 2: Find Microsoft Entra ID in the list of available connectors

Scroll to the Available connectors section and locate Microsoft Entra ID.

Note: If you can't find a connector in this list, it means one of the following:

  1. You've already connected it — check the ”Active connectors” section at the top of the connectors page, or

  2. Your workspace owner has disabled this connector for your workspace — reach out to them for more information or to request that it be enabled.

Step 3: Hover the connector card and click the connect button

Hover the Microsoft Entra ID card and click the Connect button.

Tip: If you click the card itself instead of the Connect button, you'll open a connector detail page with more information about its capabilities.

Step 4: Initialize the Pipedream connection

When clicking Connect in the previous step, a pop-up will appear powered by Pipedream. Click the Continue button in the pop-up to initialize the set up.

Note: Sana uses Pipedream to connect your account. Pipedream is a Workday product, trusted by millions of people to keep their data secure.

Step 5: Sign in to Microsoft Entra ID and approve the requested scopes

You'll be redirected to Microsoft Entra ID to go through their OAuth flow. Sign in and approve the scopes Sana needs to operate the connector.

Step 6: Complete the set up

You've successfully connected your Microsoft Entra ID account. Click Continue to complete the setup and start using the connector.

Did this answer your question?