Entra Sync

Entra ID & Intune Sync — Overview

How the Entra ID and Intune Sync app works and what it syncs into Atlassian Assets.

Entra ID & Intune Sync — Overview

The Entra ID & Intune Sync app is a native Atlassian Forge application available on the Atlassian Marketplace. It automatically synchronises your Microsoft Entra ID directory and Microsoft Intune device inventory into Atlassian Assets, keeping your CMDB accurate without manual effort.

What it syncs

Entra ID objects

Object typeKey attributes synced
UsersDisplay name, email, department, job title, manager, account status
GroupsGroup name, description, member list
ApplicationsApp name, client ID, sign-in audience, owners

Intune devices

AttributeNotes
Device nameAs registered in Intune
Owner / Primary userLinked to the corresponding Entra User asset
Model & manufacturerHardware details
Operating system & versionResolved at sync time
Compliance statusCompliant / Non-compliant / Unknown
Last sign-inUTC timestamp
Entra Device IDUnique identifier for CI linking

How assets are structured

RectifAI creates a set of object schema types in your Assets instance:

  • EntraUser
  • EntraGroup
  • EntraApplication
  • IntuneDevice

Each IntuneDevice is linked to its EntraUser owner, and each EntraUser is linked to their manager, creating a traversable hierarchy inside Assets.

Why Forge?

The app runs entirely inside the Atlassian Forge runtime. No data is transmitted to external servers — all processing happens within the Atlassian trust boundary. This simplifies your security review and means there is no infrastructure for you to manage.