
Let’s be frank: over the past few months, our Azure Entra ID connector has not lived up to your expectations. Some of you experienced slowness and occasional unavailability, and we saw it happen alongside you. Rather than patching around the edges, we made a different choice: rebuilding the connector entirely.
And we took the opportunity to simplify your day-to-day: Azure Admin and Azure Entra ID are merging into a single connector. One instance to configure, one vault, and much broader coverage.
We led this rebuild with two non-negotiables: performance and reliability. The new connector collects all its data through the Microsoft Graph API, Microsoft’s official, unified interface for querying a tenant, with short and stable response times — including on tenants with several thousand applications.
Another change of philosophy: when a permission is missing, the connector no longer fails with an obscure error. It tells you explicitly which permission to grant in your tenant. In other words, no more sensors in error without explanation: you know immediately what to fix, and where.

Until now, monitoring your directory was split between two connectors: Azure Admin on one side (certificates, secrets, directory synchronisation), Azure Entra ID on the other. The new connector brings these use cases together and adds new ones, for a complete read-only view of your Microsoft Entra ID tenant (formerly Azure Active Directory):
Each item type is an independent sensor: you only enable what you need, with only the matching Graph permissions.

Certificate and secret monitoring remains the heart of the connector: catching an expiring credential before it breaks an authentication. It gains three long-awaited capabilities:
This is the important part of this announcement: the switch-over of your existing instances will be driven automatically by our team. Your current Azure Admin and Azure Entra ID sensors will be migrated to the new connector progressively and transparently — no instance to recreate, no break in your history, no action required on your side.
Timing-wise, the merge will roll out over the coming weeks, and we will notify each affected account individually before its wave. The only case where we will need your administrator: if you want to enable the new item types, some additional Graph permissions must be granted in your tenant — they are detailed type by type in the documentation, and you only grant what you use.
The full documentation is available here: Azure Entra ID connector, and vault creation is described on the Vaults page.
While I am at it: this documentation has been rebuilt too — a new platform, real output samples for every connector, a permission table per item type and a troubleshooting guide. The connector and its documentation were redesigned together.
And for any question about the merge or enabling the new sensors, our team is at your disposal.
A proof of concept is worth all the big explanations. You can try Senhub now, with no commitment.
Simply create your account (no credit card required) and start monitoring your cloud assets with your very own monitoring tool.
If you have any questions, send us an e-mail at contact@senhub.io or open our chat window to talk to one of our Senhub buddies.