Skip to main content
Connect Origin to your identity provider so that users, groups, group memberships, and device-to-user assignments stay in sync with your source of truth. Once an integration is connected, the synced data appears in the Directory Browser in your Origin dashboard, giving every investigator richer context when reviewing endpoint activity.

What Directory Integration Does

After you connect a provider, Origin periodically pulls directory data and surfaces it throughout the console:
  • Users — every account in your directory, including display name, email, department, job title, and last sign-in time.
  • Groups — security groups, distribution lists, and Microsoft 365 groups, with direct memberships and nested sub-groups.
  • Device-to-user assignments — hardware serial numbers and assigned owners from your MDM or device management platform, used to correlate observed endpoints with real identities.
All of this data is browsable in Directory Browser, and where serial numbers match endpoints already registered in Origin, you’ll see an Assigned identity appear directly on the endpoint detail panel.

Supported Providers

Microsoft Entra ID

Register an application in your Entra tenant, grant the required Microsoft Graph permissions, and connect the integration from the Origin dashboard. Full step-by-step guide available.

Google ID

Coming soon. Google Workspace directory integration is on the roadmap. Check back for updates.

Okta

Coming soon. Okta directory integration is on the roadmap. Check back for updates.