Before you start
Make sure you have registered the Cognite API and the CDF in Microsoft Entra ID and set up Microsoft Entra ID and CDF groups to control access to CDF data.Step 1: Register an app in Microsoft Entra ID
Sign in to the Azure portal
Select a tenant
Select Microsoft Entra ID
Add a new registration
Register an application
Copy the Application ID
Create a client secret

Configure the secret
Copy the client secret value
Step 2: Create a group in Microsoft Entra ID and add the registered app as its member
Open Groups in Azure AD
Create a group
Add members to the group
Add the app as a member
Add users
Copy the Object ID

Step 3: Create a group in CDF and link to the Microsoft Entra ID group
Sign in to CDF
Create a new group
Add capabilities
- For extractors, see extractor capabilities.
- For connectors, see connector capabilities.
Link to Microsoft Entra ID group
- In the Source ID field, enter the Object Id for the AAD group exactly as it exists in AAD. You can use the same group Id for multiple services.
- In the Source name field, enter the name of the group in Microsoft Entra ID.
Step 4: Deploy your integration service
Configure and deploy your integration service according to the documentation:- For extractors, see the extractors documentation.
- For connectors, see the connectors documentation.