Skip to main content

AI & SaaS Management: Kandji Connector

JumpCloud® AI & SaaS Management gives you visibility and control over shadow IT, including AI and SaaS app usage, within your org. Connectors detect shadow IT without adoption of a browser extension and provide a significant increase to valuable usage and security insights.

The Kandji Connector retrieves user information from the Kandji API. Using periodic polling for regular updates, it captures new users to keep data accurate and up-to-date.

Prerequisites

  • You must be a Kandji account owner or admin to create an API token.

Considerations

  • Based on your organization’s size, the initial collection of data may take some time, up to an hour.

Configuring Kandji

  1. Log in to Kandji.
  2. In the left menu, go to Settings.
  3. Under the Access tab, go to API Token.
  4. Copy and save your API URL to use with JumpCloud.
  5. Click Add Token and configure the following settings:
    1. Copy and save the token before proceeding. You'll only see it once.
    2. Click Next.
    3. Click Configure and add the needed API permissions (read access to the user list).
  6. Click Save and then proceed to the JumpCloud configuration.

Configuring JumpCloud

  1. Log in to the JumpCloud Admin Portal.
Important

If your data is stored outside of the US, check which login URL you should be using depending on your region. If your organization uses LDAP, RADIUS, or requires firewall allow list configuration, the Fully Qualified Domain Names (FQDNs) will also be region specific. See JumpCloud Data Centers for the URLs, FQDNs, and IP addresses.

  1. Go to Access > AI & SaaS Management > Settings.

  2. Under AI & SaaS Management Settings, click the Connectors tab, then click + Add Connector.

    JumpCloud AI & SaaS Management Settings Connectors tab, showing the list of active SaaS connectors, with Atlassian displayed in a CONNECTED status.

  3. Click the Kandji connector.

  4. Configure the following settings:

    1. Enter a Connector name.
    2. For the API Key, paste the key from Kandji.
    3. For the API URL, paste the value from Kandji.
  5. Click Connect and then Save Connector.

  6. You will now see Kandji in your list of Connectors.

note

If permissions are accidentally removed, or if the admin who configured left your organization, the connector will stop working and you will be prompted to Reconnect.

Uninstall/Remove

  • On the Connector’s detail page, click on Delete Connector and follow the prompts.

  • To revoke the permissions granted to JumpCloud, delete the API token created in Kandji.

Was this information helpful?