> ## Documentation Index
> Fetch the complete documentation index at: https://docs.threataware.com/llms.txt
> Use this file to discover all available pages before exploring further.

# SCCM

> Connect ThreatAware to SCCM

## Overview

The SCCM integration enables ThreatAware to connect to your SCCM system for data collection and monitoring.

<Info>
  **Connection Method**: Credentials
  **Setup Time**: 15-20 minutes
  **Access Required**: Administrator account
</Info>

## Setup instructions

<Steps>
  <Step title="Log in to the ThreatAware dashboard and navigate to **Settings** > **Systems**." />

  <Step title="Use the search bar to find SCCM." />

  <Step title="Click **Connect** and the following pop-up will appear.">
    Input Details\*\*
  </Step>

  <Step title="Set up a user in SCCM with 'Read-Only Analyst' permissions." />

  <Step title="Enter the credentials for this user into the form." />

  <Step title="Create a port forward on the firewall to the SCCM server. Restrict access to the current ThreatAware AWS egress IP addresses.">
    For the up-to-date list of AWS IPs to whitelist, see the **AWS Account / IP Whitelist Info** link at the top of [Settings → Integrations](/settings/integrations). The list is also documented in your tenant's onboarding pack. (Two specific addresses were previously published here; do not hard-code IPs without checking the current live list.)

    Note: for tenants that prefer outbound-only connectivity, the [PowerShell Relay](/powershell-relay) is an alternative path for SCCM that avoids inbound firewall rules entirely.
  </Step>

  <Step title="Enter the public IP address along with the selected forwarded port for the SCCM server." />
</Steps>

## Troubleshooting

<AccordionGroup>
  <Accordion title="Connection Issues" icon="triangle-exclamation">
    If you encounter connection errors:

    * Verify your credentials are correct
    * Check firewall rules allow outbound connections
    * Ensure required ports are accessible
    * Review the integration logs in ThreatAware
  </Accordion>

  <Accordion title="No Data Appearing" icon="database">
    If data is not appearing after connecting:

    * Wait 5-10 minutes for initial sync
    * Verify the account has proper permissions
    * Check the integration status in Settings
    * Contact support if issues persist
  </Accordion>
</AccordionGroup>

## Additional resources

For more information, contact ThreatAware support.
