# Entra ID Enrollment

> Enroll Windows Devices in Applivery MDM through Microsoft Entra ID — streamline provisioning and centralize Device Management.

Source: https://docs.applivery.com/en/device-management/windows/enrollment/entra-id-enrollment/  •  Last updated: 2026-03-24

**Key topics:** Microsoft Entra ID integration, Applivery device enrollment, Single Sign-On (SSO), Automated provisioning, Enhanced security, Microsoft Entra ID, Azure Active Directory, Applivery, MDM, MFA

---

**TL;DR:** Integrate Microsoft Entra ID with Applivery to streamline device enrollment, enhance security, and centralize control through SSO and automated provisioning.

Integrating **Microsoft Entra ID** (formerly Azure Active Directory) with Applivery allows organizations to tie device enrollment directly to their corporate identity system. By leveraging Entra ID, users can enroll Devices using their existing credentials while IT teams maintain centralized control over access, security, and policy assignment.

This integration connects identity and device management, reducing manual work, improving security posture, and ensuring that Devices are always associated with the correct users and groups.

## Why use Entra ID for enrollment?

Using Microsoft Entra ID as part of your enrollment strategy provides several key benefits:

-   **Single Sign-On (SSO)**: Users enroll Devices with their standard corporate credentials, eliminating the need for additional usernames or passwords.
    
-   **Automated provisioning**: Users and groups are synchronized automatically, ensuring that the appropriate Policies and configurations are applied based on identity.
    
-   **Enhanced security**: Support for Multi-Factor Authentication (MFA) and immediate access revocation when a user leaves the organization strengthens overall security.
    

**Access the Entra ID configuration**

Once in the [**Applivery Dashboard**](https://dashboard.applivery.io/), head to **Automation** 1, select **Smart Enrollments** 2, choose **Windows** 3 from the left-hand menu, and then locate the enrollment profile you want to configure.

Click the **three-dot (⋮) menu** 4 on the right side of the profile and select **Microsoft Entra ID setup** 5. A modal window will open, displaying the required configuration details, including your unique Azure configuration URLs and the fields needed to complete the integration.

![entra id](https://docs.applivery.com/int/_r2/media/09ac0a4e-3ad8-478f-9f15-3474973eec71/e1745a8b-34b1-4112-b538-178f240d0da3.png)

**Complete the integration setup**

With the Applivery configuration modal open, you can now link Applivery with your Microsoft Entra ID tenant.

Copy the **MDM Terms of Use URL** and **MDM Discovery URL** 6 provided in Applivery and use them to configure the Mobility (MDM and MAM) application in the Microsoft Entra ID / Azure Portal. Then, enter the required credentials—**Client ID**, **Tenant ID**, and **Client Secret** 7—into the corresponding fields in Applivery.

Once all values have been added, click Save Configuration to finalize the connection between Applivery and Entra ID.

![entra id configuration](https://docs.applivery.com/int/_r2/media/09ac0a4e-3ad8-478f-9f15-3474973eec71/d09a0ef6-21ef-4828-ac8b-c76cfdda0d53.png)

:::info
Detailed, step-by-step instructions for generating the Client ID, Tenant ID, and Client Secret in the Microsoft Entra ID (Azure) portal are available in the final section of the Applivery configuration modal (**Step-by-step setup guide** 8).
:::

By integrating Microsoft Entra ID with Applivery, organizations can enable a secure, identity-driven enrollment flow that simplifies onboarding, enforces access controls, and ensures Devices are always managed according to corporate identity and security Policies.

:::info
Were some of your PCs **already joined to Entra ID before** you configured Applivery? Those Devices won't enroll on their own, because they use a security token issued before the integration existed. See [Enroll Devices Already Joined to Entra ID](/en/device-management/windows/enrollment/entra-id-joined-devices-enrollment/) to bring them in without unjoining or resetting them.
:::
