> ## Documentation Index
> Fetch the complete documentation index at: https://docs.oleria.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Tanium

> Connect your Tanium Console to Oleria to continuously discover user access across your endpoint management platform.

Tanium is an endpoint management and security platform. Connect your Tanium Console to Oleria to bring user access into your identity and access graph, without a dedicated Tanium-specific integration.

## What Oleria discovers

User accounts and profile attributes synced from Tanium's directory. Oleria uses this data for dormant account detection and access reviews, refreshed on Tanium's standard sync schedule.

## Prerequisites

* Admin access in Tanium Console with permission to generate an API token.
* Admin access on the Oleria platform to add a new integration.

<Note>
  The exact location of these settings can change over time. If the steps below don't match what you see, refer to Tanium's own API documentation.
</Note>

## Get your SCIM credentials from Tanium

<Steps>
  <Step title="Generate an API token in Tanium Console">
    Sign in to Tanium Console as an admin, go to **Administration** → **API Tokens**, and generate a token.
  </Step>

  <Step title="Copy your SCIM Base URL and Authentication token">
    Copy both values before you leave the page - you'll paste them into Oleria in the next section:

    * **SCIM Base URL** - the HTTPS API endpoint for your Tanium server.
    * **Authentication token** - the API token you generated.

    <Note>
      Copy the token now. Many applications display it only once. Store it securely and rotate it per your organization's security policy.
    </Note>
  </Step>
</Steps>

## Connect Tanium to Oleria

<Steps>
  <Step title="Open the integration">
    Go to your Oleria workspace, select **Integrations**, then select the **Tanium** tile.
  </Step>

  <Step title="Complete the connection form">
    Select **Continue** and fill in the connection form:

    | Field                | Notes                                                                                 |
    | :------------------- | :------------------------------------------------------------------------------------ |
    | Instance name        | Optional. Short, recognizable label for this connection (for example, `tanium-prod`). |
    | SCIM Base URL        | Required. The HTTPS API endpoint copied from Tanium.                                  |
    | Authentication token | Required. The API token issued by Tanium.                                             |
  </Step>

  <Step title="Save the integration">
    Select **Connect** to validate the credentials and save the integration.
  </Step>
</Steps>

## Verify the integration

Confirm the new instance appears in your Oleria workspace under **Connected Integrations** with a status of **Healthy**. Oleria syncs users from Tanium on the standard SCIM provisioning schedule once the initial sync completes.

<Note>
  If Tanium rotates your API token, update the Authentication token in Oleria by editing the integration.
</Note>

## Governance actions

Oleria can also invoke lifecycle actions in Tanium when the token you provide has write access:

* Enable or disable a user account
* Create a new user

<Note>
  Many teams start with a read-only token for visibility, then grant write access once they're ready to automate remediation in Tanium.
</Note>

## Contact us

For questions about this integration, contact us at [support@oleria.com](mailto:support@oleria.com).
