What Oleria discovers
Once connected, Oleria continuously discovers and maps the following from your JumpCloud directory:- Accounts - every directory (system) user in your JumpCloud tenant.
- User groups - all user groups and their membership, including whether a group is dynamic (membership set by a query) or static (membership set manually).
- Admin roles - the admin-portal roles defined in your tenant.
JumpCloud does not expose an API to list which accounts hold which admin role. Oleria discovers the role definitions in your tenant, but cannot map which users are assigned to them. See Known limitations.
Prerequisites
- A JumpCloud administrator account
- API access enabled for that admin account (see the next section)
Use a service account rather than a personal employee account for the integration to ensure continuity if the employee leaves or changes roles.
Connect JumpCloud to Oleria
1
Enable API access for your admin account
Log in to JumpCloud as an administrator and go to Settings -> Administrators. Select your admin account and enable API access.
2
Copy your API key
Select your account menu in the top right of the JumpCloud console, then select My API Key. Copy the key shown.
3
Connect in Oleria
Go to your Oleria workspace, select Integrations -> select JumpCloud. Select Continue and fill in the connection form:
Select Authenticate to validate and save the integration. Oleria checks the credentials against JumpCloud before saving.
Verify the integration
Confirm the JumpCloud instance appears in your Oleria workspace connected integrations. After the first sync completes, you can review the discovered accounts, groups, and roles in your Oleria workspace.If you rotate the API key, update the credentials in Oleria by editing the integration. A revoked or expired key will cause discovery to stop.
Remediation actions
Beyond discovery, Oleria can act on JumpCloud access to remediate risk.Reactivating a suspended account isn’t a standalone action you select in Oleria - it’s only available as the automatic revert of a prior Suspend user account action.
Known limitations
- Admin role assignments are not mapped - JumpCloud’s API has no endpoint to list which accounts hold which admin-portal role. Oleria discovers the role definitions that exist in your tenant, but cannot show which users are assigned to them.
- Scope is Users, Groups, and Roles only - this integration does not cover JumpCloud’s device/MDM management, RADIUS/LDAP, SSO application entitlements, or its separate directory activity/audit log.
- US data center only - tenants on JumpCloud’s EU or India data centers cannot be connected by this integration today.
- Multi-organization (MSP) accounts - if your API key has access to more than one JumpCloud organization, Oleria connects to and syncs only the first organization returned by JumpCloud. Other organizations under the same MSP account are not synced.

