Iru
The Iru integration syncs the devices you manage in Iru (formerly Kandji) into Oneleet as assets. Its monitors check that your Macs have FileVault, the application firewall, and Gatekeeper turned on, and that your devices are still checking in.
Only workspace admins can connect the integration. It is currently in beta.
Connect Iru
Section titled “Connect Iru”Each connection covers one Iru account, and you need an API token from it.
-
In Iru, open Settings > Access and create a token under API tokens. Give it permission to list devices and to read the FileVault, Application Firewall, and Gatekeeper and XProtect categories in Prism.
-
Copy the API URL shown on the same page. Oneleet needs the hostname from it, without
https://and without a trailing slash, such ascompany.api.iru.com. -
In Oneleet, on the Integrations page, click Add integration, then click the Iru card.
-
Enter the hostname in API hostname and the token in API token, then click Connect.
Kandji hostnames work too, and so do the European ones, so company.api.kandji.io and company.api.eu.iru.com are both accepted. Oneleet rejects any other hostname when you submit the form.
Connecting also adds Iru to your vendors. Each connection is named after its API hostname and the time you created it, and you can change that with Rename on the connection’s card. To connect a second Iru account, click New connection on the integration’s Settings tab.
Synced assets
Section titled “Synced assets”Oneleet syncs one asset per device in Iru, automatically and many times a day. Each device carries its name, serial number, model, platform, OS version, and last check-in time, along with whether the Iru agent is installed, whether it’s enrolled in MDM, and whether it’s been removed from Iru.
For Macs, Oneleet also reads the FileVault, application firewall, and Gatekeeper statuses from Iru’s Prism data. Prism only has rows for Macs the Iru agent has collected from, so a Mac the agent hasn’t reached has no statuses at all.
A device you remove in Iru stays in Oneleet as an asset, and its monitors stop applying to it.
Monitors
Section titled “Monitors”The integration adds four monitors.
- Iru devices aren’t dormant fails for a device that hasn’t checked in within the dormancy threshold, which is 45 days by default. The 45-day threshold can be changed in the monitor settings.
- Iru devices have disk encryption enabled passes when a Mac reports FileVault on.
- Iru devices have a firewall enabled passes when a Mac reports the application firewall on.
- Iru devices have Gatekeeper enabled passes when a Mac reports Gatekeeper on.
The last three mark every device that isn’t a Mac not applicable.
Replace or remove a connection
Section titled “Replace or remove a connection”When the API token stops working, or when you need to point a connection at a different hostname, add a replacement with New connection and then remove the old one.
To remove a connection, open the three-dot menu on its card and click Disconnect. To remove the integration along with its devices and their monitor results, click Remove integration under Danger zone on the Settings tab.