Connect Microsoft Intune¶
Step-by-step guide to connecting Microsoft Intune to Thalian for endpoint management intelligence.
Prerequisites¶
- Microsoft 365 tenant with Intune licenses assigned
- Intune Administrator or Global Reader role to authorize the OAuth consent
Connect via OAuth¶
- Go to Integrations → Browse
- Find Microsoft Intune and click Connect
- Click Authorize with Microsoft
- Sign in with your Microsoft admin account
- Review the requested permissions — Thalian requests read-only scopes for device management data
- Click Accept to grant consent
- You'll be redirected back to Thalian — the integration is now connected
Requested Permissions¶
Intune shares the Microsoft OAuth consent with Entra ID. The scope specific to Intune is DeviceManagementManagedDevices.Read.All, which pulls managed device inventory for endpoint posture checks. For the full list of Microsoft scopes, see Connect Microsoft Entra ID.
Alternative: API Credentials¶
If your organization restricts OAuth consent flows:
- Register an application in Entra ID → App registrations
- Grant the application
DeviceManagementManagedDevices.Read.Allpermissions (application type) - Create a client secret
- In Thalian, select the API connection method
- Enter your Tenant ID, Client ID, and Client Secret
- Click Save
What Thalian Syncs¶
- Devices — managed devices including OS, model, and enrollment status
- Compliance status — per-device compliance state and policy violations
- Configurations — device configuration profiles and their assignment status
For a full list of supported platforms, see Integrations Guide.