Entra Asset Management with BlueTally

Sync employees and enable secure access with Microsoft Entra and BlueTally - your complete asset management solution with native Microsoft integration. BlueTally brings comprehensive asset tracking to organizations using Microsoft Entra. With automatic employee syncing via SCIM, Single Sign-On authentication, and complete asset lifecycle management, you get seamless asset management integrated into your Microsoft environment.

What Is Entra Asset Management?

Entra Asset Management typically refers to one of two approaches:

1. Using Microsoft Entra as a data source for asset management

Syncing employee information from Entra into a dedicated ITAM platform (like BlueTally) to automate user management and enable secure authentication.

2. The incorrect assumption that Entra handles ITAM

Expecting Microsoft Entra to track, manage, and report on IT assets — functionality it was never designed to provide.

BlueTally takes the first approach. We integrate with Microsoft Entra to:

  • Sync employees automatically via SCIM 2.0
  • Enable Single Sign-On using SAML
  • Centralize access control
  • Automate user provisioning and de-provisioning

This gives you Entra’s enterprise-grade identity management combined with BlueTally’s purpose-built IT asset management.

What Is Microsoft Entra?

Microsoft Entra (formerly Azure Active Directory or Azure AD) is Microsoft’s cloud-based identity and access management (IAM) platform. Launched in July 2023 as a rebrand of Azure AD, Entra provides:

  • Single Sign-On (SSO): One login for Microsoft 365, Azure, and thousands of SaaS apps
  • Multi-Factor Authentication (MFA): Enhanced security for user sign-ins
  • Conditional Access: Risk-based policies controlling access
  • User & Group Management: Centralized employee, contractor, and guest directory
  • Device Registration: Register devices for access control

Entra is the identity backbone for organizations using Microsoft 365, Azure, and hybrid cloud environments.

However, identity management and IT asset management are fundamentally different disciplines — and this distinction is critical.

Can Microsoft Entra Be Used for IT Asset Management?

Short answer: No. Microsoft Entra is an identity and access management (IAM) platform — not an IT asset management (ITAM) solution.

What Entra is designed to do

Entra's Purpose What This Means
Identity management Manages user accounts, groups, and authentication
Access control Determines who can access which applications and resources
Device registration Registers devices for conditional access – not inventory tracking
Authentication Verifies user identity through SSO, MFA, and certificates

What IT Asset Management requires:

ITAM Requirements Entra Capability
Track asset ownership and assignment history Not available
Monitor warranty expiration dates Not available
Manage asset lifecycle (procurement to disposal) Not available
Track non-enrolled devices (monitors, peripherals, phones) Not available
Checkout workflows for loaned equipment Not available
Financial tracking (purchase cost, depreciation) Not available
Audit trails for compliance Limited to authentication logs

The Microsoft Tech Community itself confirms this limitation. When users ask about asset management in Entra (formerly Azure AD), the response from Microsoft MVPs is consistent: "None of my customers are using asset management in AAD. It's just not extensive enough. Everyone uses third-party systems."

The solution? Use Entra for what it does best - identity and access management - and integrate it with a dedicated ITAM platform like BlueTally for complete asset lifecycle tracking.

How BlueTally Enables Entra Asset Management

Automatic employee synchronization

Sync employee names, email addresses, job titles, locations, and departments from Entra to BlueTally using SCIM 2.0 - no manual employee management or data entry required.

Single Sign-On authentication

Enable secure, passwordless access to BlueTally using your existing Entra credentials - users sign in once and access asset management seamlessly without additional passwords.

Seamless user access control

Manage BlueTally access directly from Entra by assigning users or groups - automatic provisioning and de-provisioning based on your existing directory structure.

Complete asset lifecycle management

Track assets from procurement to disposal with comprehensive asset management features integrated with your Microsoft environment - check-in/out, maintenance tracking, warranty monitoring, and audit management.

Limitations of Using Entra Alone for Asset Management

While Microsoft Entra excels at identity management, it was never designed for IT asset management. Here are the seven key limitations organizations face when trying to use Entra for ITAM:

1. No Asset Inventory Beyond Registered Devices

Entra only tracks devices that are registered or joined to your directory. This means:

  • Monitors, docking stations, and peripherals are invisible
  • Personally-owned devices (BYOD) that aren't registered don't appear
  • Network equipment, printers, and other infrastructure assets aren't tracked

2. No Assignment History

Entra shows who currently owns a device, but provides no history of previous assignments. When an employee leaves and their laptop is reassigned, you lose all records of past ownership - critical for audits and incident investigations.

3. No Lifecycle Tracking

Entra has no concept of asset lifecycle stages:

  • No procurement or purchase date tracking
  • No warranty expiration monitoring
  • No end-of-life (EOL) or end-of-support (EOS) alerts
  • No disposal or decommissioning workflows

4. No Financial Data

For IT budgeting and compliance, you need financial visibility that Entra simply doesn't provide:

  • No purchase price or cost tracking
  • No depreciation calculations
  • No vendor or PO number associations
  • No total cost of ownership (TCO) analysis

5. No Checkout or Loan Workflows

Entra doesn't support temporary asset assignments:

  • No loaner equipment tracking
  • No due date monitoring for borrowed assets
  • No digital signatures for checkout acknowledgment
  • No automated overdue notifications

6. Limited Reporting for ITAM

Entra's reporting focuses on security and compliance - sign-in logs, audit events, and risk assessments. It doesn't provide:

  • Asset utilization reports
  • Warranty status dashboards
  • Lifecycle stage summaries
  • Assignment and movement histories

7. Identity-Centric, Not Asset-Centric

Fundamentally, Entra is built around identities (users), not assets (devices and equipment). An ITAM system needs to track an asset through its entire lifecycle, regardless of who owns it at any given time.

What Data Does BlueTally Sync from Entra?

BlueTally integrates with Microsoft Entra through two complementary mechanisms: SCIM 2.0 for employee synchronization and SAML SSO for secure authentication.

Employee Data via SCIM 2.0

BlueTally automatically syncs employee information from your Entra directory, eliminating manual user management:

Entra Field BlueTally Field Auto-Updated
Display Name Employee Name ✓ Yes
Email Address Email ✓ Yes
Job Title Title ✓ Yes
Department Department ✓ Yes
Office Location Location ✓ Yes
Manager Reports To ✓ Yes
Employee ID Employee ID ✓ Yes

How SCIM sync works:

  • Configure SCIM 2.0 provisioning in your Entra admin center
  • Assign users or groups to the BlueTally enterprise application
  • Employee records automatically populate in BlueTally
  • Changes in Entra (new hires, departures, title changes) sync automatically
  • De-provisioned users are automatically marked as inactive

Authentication via SAML SSO

BlueTally supports SAML-based Single Sign-On with Entra, providing:

  • Session management: Centralized sign-out across all connected applications
  • Passwordless access: Users sign in with their existing Entra credentials
  • Centralized access control: Manage BlueTally access directly from Entra
  • Automatic provisioning: Users added to the BlueTally Entra app gain immediate access
  • Just-in-time (JIT) provisioning: New users created on first sign-in

What BlueTally Adds Beyond Entra

Once employees are synced from Entra, BlueTally provides the complete ITAM layer:

Capability Synced from Entra Added by BlueTally
Employee directory
SSO authentication
Asset inventory
Assignment history
Warranty tracking
Lifecycle management
Checkout workflows
Financial tracking
Audit trails

How to Use Entra + BlueTally

1. Configure SCIM employee synchronization

Set up the SCIM 2.0 integration to automatically sync employee information from Entra to BlueTally - including names, emails, job titles, departments, and locations with ongoing updates.

2. Enable Single Sign-On authentication

Configure SAML SSO to allow your team to access BlueTally using their existing Entra credentials - secure, passwordless access with centralized user management.

3. Manage access through Entra

Assign individual users or entire groups access to BlueTally directly from your Entra console - automatic user provisioning and de-provisioning based on directory changes.

4. Track assets with synchronized employees

Check assets in and out to employees in BlueTally that are automatically synced from Entra, with real-time updates when employee information changes in your directory.

What Is the Difference Between Entra and Intune?

This is one of the most common questions IT teams have when navigating Microsoft's ecosystem. Here's the clear distinction:

Microsoft Entra (Identity Management)

  • Purpose: Manage user identities and access to applications
  • Focus: Who can access what
  • Key features: SSO, MFA, Conditional Access, user/group management
  • Device role: Registers devices for access control purposes

Microsoft Intune (Device Management)

  • Purpose: Manage and secure devices (MDM/MAM)
  • Focus: How devices are configured and secured
  • Key features: Device enrollment, policy deployment, app management, compliance
  • Device role: Full device lifecycle management and configuration

How They Work Together

Entra and Intune are complementary:

  • Entra authenticates the user
  • Intune manages the device
  • Together, they enable Zero Trust access policies

Where BlueTally Fits

Neither Entra nor Intune provide complete IT asset management:

  • Entra focuses on identity, not assets
  • Intune manages enrolled devices, but doesn't track lifecycle, ownership history, or non-MDM assets

BlueTally integrates with both:

  • Entra: Employee sync (SCIM) and SSO authentication
  • Intune: Device sync for hardware and software inventory (see our Intune Asset Management integration)

This gives you unified asset management across your Microsoft environment - with employee data from Entra, device data from Intune, and complete lifecycle tracking in BlueTally.

Entra vs. Entra + BlueTally

Capability
Entra
Entra + BlueTally
User authentication (SSO)
Check Icon | BlueTally™
Check Icon | BlueTally™
Multi-factor authentication
Check Icon | BlueTally™
Check Icon | BlueTally™
User directory
Check Icon | BlueTally™
Check Icon | BlueTally™
Device registration
Check Icon | BlueTally™
Check Icon | BlueTally™
Conditional access policies
Check Icon | BlueTally™
Check Icon | BlueTally™
Asset inventory (all types)
Registered devices only
Unlimited asset types
Non-enrolled asset tracking
Exit FAQ Icon | BlueTally
Monitors, peripherals, phones
Assignment history
Current owner only
Full history
Warranty tracking
Exit FAQ Icon | BlueTally
With expiration alerts
Lifecycle management
Exit FAQ Icon | BlueTally
Procurement to disposal
Checkout/loan workflows
Exit FAQ Icon | BlueTally
With digital signatures
Financial tracking
Exit FAQ Icon | BlueTally
Cost, depreciation, TCO
Audit-ready reporting
Limited to auth logs
Complete asset reports
Hardware/software inventory sync
Exit FAQ Icon | BlueTally
Via Intune Integration

FAQs About Entra Asset Management

Does Entra have built-in asset management capabilities?

Exit FAQ Icon | BlueTally
Microsoft Entra focuses on identity and access management. While it manages user accounts and authentication, it lacks dedicated asset tracking features. BlueTally adds comprehensive asset management while leveraging your existing Entra infrastructure.

How does BlueTally sync employee data from Entra?

Exit FAQ Icon | BlueTally
BlueTally uses SCIM 2.0 to automatically sync employee information including names, email addresses, job titles, locations, and departments - with ongoing updates when changes occur in Entra.

Can BlueTally automatically provision user access based on Entra?

Exit FAQ Icon | BlueTally
Yes - BlueTally supports both SCIM employee sync for asset assignments and SAML SSO for secure authentication, with user access managed directly through your Entra console.

Is this integration secure?

Exit FAQ Icon | BlueTally
Yes. BlueTally uses industry-standard SCIM 2.0 and SAML protocols, with read-only access to employee directory information and secure authentication through your existing Entra infrastructure.

Where can I find the full setup instructions for Entra integration?

Exit FAQ Icon | BlueTally
You can view our step-by-step guides for both SCIM and SSO setup - including screenshots and configuration details - in the Entra Integration Setup Guides for SCIM and SSO.

How does the Entra integration work in BlueTally?

Exit FAQ Icon | BlueTally
For detailed breakdowns of SCIM synchronization, SSO authentication, and user management workflows - see our SCIM and SSO knowledge base articles.

Is Microsoft Entra the same as Azure AD?

Exit FAQ Icon | BlueTally
Yes. Microsoft Entra ID is the new name for Azure Active Directory (Azure AD). Microsoft announced the rebrand in July 2023 to better align with the broader Microsoft Entra product family, which includes identity governance, permissions management, and network access solutions. All Azure AD features remain available under the Entra ID name.

Is Entra owned by Microsoft?

Exit FAQ Icon | BlueTally
Yes. Microsoft Entra is a Microsoft product family that includes Entra ID (formerly Azure AD), Entra Permissions Management, Entra Verified ID, and other identity and access solutions. It's part of Microsoft's security portfolio and integrates deeply with Microsoft 365, Azure, and other Microsoft services.

Does Entra have built-in asset management capabilities?

Exit FAQ Icon | BlueTally
No. Microsoft Entra is an identity and access management (IAM) platform - it manages user identities, authentication, and access control. While Entra can register devices for conditional access purposes, it doesn't provide IT asset management features like inventory tracking, warranty monitoring, lifecycle management, or checkout workflows.

What is the difference between Entra and Intune?

Exit FAQ Icon | BlueTally
Entra manages identities (users and their access to applications), while Intune manages devices (configuration, security, and compliance). Entra answers "who can access what?" while Intune answers "how are devices configured and secured?" Neither provides complete IT asset management, which is why organizations use dedicated ITAM platforms like BlueTally alongside these tools.

How does BlueTally sync employee data from Entra?

Exit FAQ Icon | BlueTally
BlueTally uses SCIM 2.0 (System for Cross-domain Identity Management) to automatically sync employee information from your Entra directory. This includes names, email addresses, job titles, departments, locations, and manager relationships. Changes in Entra automatically update in BlueTally, eliminating manual user management.

Can BlueTally automatically provision user access based on Entra?

Exit FAQ Icon | BlueTally
Yes. BlueTally supports both SCIM 2.0 for employee synchronization and SAML SSO for authentication. When you assign a user or group to the BlueTally enterprise application in Entra, they automatically gain access. When they're removed, their access is automatically revoked.

How does Entra integration work with BlueTally's Intune integration?

Exit FAQ Icon | BlueTally
They're complementary. The Entra integration provides employee data and SSO authentication. The Intune integration provides device and software inventory. Together, they give you a complete picture: employees from Entra, devices from Intune, and full asset lifecycle tracking in BlueTally. We automatically deduplicate records to prevent duplicate assets from appearing.

Ready to simplify your asset management?

Skip the spreadsheets and manual tracking. Gain full control of your assets — from ownership to lifecycle — all in a platform built for IT teams.

Try live demo