Authentication Method
Microsoft Entra ID authenticates through Microsoft's OAuth authorisation flow. Administrators sign in with their Entra ID admin account credentials, complete multi-factor authentication via Microsoft Authenticator, and grant Montro access by providing administrator consent on behalf of the organisation.
How to Connect:
- Navigate to Integrations in your Montro dashboard.
- Select Microsoft Entra ID from the integrations catalogue and click Connect.
- On the permissions screen, click Connect to begin the Microsoft authentication process.
- Sign in with your Microsoft Entra ID administrator account by entering your email address.
- Enter your password and click Sign In.
- Complete multi-factor authentication by opening Microsoft Authenticator and approving the sign-in request.
- Review the requested permissions and select 'Consent on behalf of your organisation'.
- Click Accept to grant Montro access to the required identity and directory data.
- Montro begins synchronising Entra ID records - users, applications, licences, roles, role assignments, MFA status, and sign-in information.
- Review synchronised user identities within the Users module in Montro.
Data Synced
Users Module | Entra ID user identities, email addresses, account status, MFA registration, and sign-in information. |
Applications | Application assignments and access relationships between users and applications managed through Entra ID. |
Roles & Licences | Role assignments, role holder records, and Microsoft licence allocation data. |
Data Residency
Microsoft Entra ID data imported into Montro is stored on AWS Frankfurt (eu-central-1), within the European Union. No customer data is transferred outside the EU. Data residency terms are specified in Montro's Data Processing Agreement.
Sync Frequency
Data can be synchronised manually at any time after the initial connection, with no limit on the number of manual syncs. Montro also provides an automatic sync option - when enabled, the platform synchronises data once every night to keep information current.
Permission Scope
Montro requests read-only access to Microsoft Entra ID directory data. The integration retrieves user identities, application assignments, roles, licences, MFA status, and sign-in information. Montro does not modify Entra ID settings, user accounts, roles, or directory configurations. Administrator consent on behalf of the organisation is required to access tenant-level directory data.
EU Data Storage
Montro's infrastructure runs exclusively on AWS eu-central-1 (Frankfurt), governed by Irish and EU law. There is no FISA 702 exposure and no Schrems II ambiguity. Your data is never replicated outside the EU without your explicit, documented consent. EU data residency is not a configuration option, it is the architecture.







