Setup Guide
Microsoft Entra ID (Azure AD) and Microsoft 365 Setup Guide
Follow the steps below to connect, authorize, verify, and schedule collection. If you want help mapping exports to your environment, book a walkthrough.
Steps
Use these as a starting point, then verify collection inside Aurora.
- 1Create an Entra ID app registration (single-tenant).
- 2Grant required Microsoft Graph Application permissions and admin-consent them.
- 3Create a client secret and store it in your secret manager.
- 4Configure tenant_id, client_id, and client_secret.
- 5Validate, then run full sync; incremental sync advances a time watermark cursor.
Credentials
The inputs Aurora needs to authorize and collect proof.
Permissions
Aurora requests only the minimum access needed for collection and checks.