ConnectWise Manage Custom Integration

6 min. readlast update: 07.29.2026

View in Browser

The ConnectWise Manage integration connects your ConnectWise Manage and ThreatLocker accounts, allowing ThreatLocker approval requests, ticket updates, organization mappings, and agreement information to synchronize between the two platforms.

Before configuring the integration in the ThreatLocker Portal, you must create a custom security role, API member, and public and private API keys in ConnectWise Manage. ConnectWise recommends assigning administrator permissions to the API user.

 

To further secure your environment, you can apply the more restrictive settings shown below. If the integration does not function correctly with these settings, restore the security role to Admin permissions and contact ThreatLocker Support for assistance.

Once configured, the integration synchronizes daily.

Creating a Custom Security Role in ConnectWise

  • Navigate to System > Security Roles.  

  • Select the '+' New Item button. 

  • Enter a name for the Role ID.
  • Click the Save button.

  • After selecting Save, you are automatically redirected to the Security Modules for Role: [Role Name] page.

  • For better security, select only the permissions required for this Integration.

undefined

  • Be sure to click 'Save' to save your settings.

Creating an API Member in ConnectWise

  • Navigate to System > Members

  • Select the API Members tab
  • Select the '+' New Item button.

  • Fill out the New Member form.
  • Select your custom security role for the Role ID.

  • Be sure to click 'Save' to save your settings.

Generating the API Key in ConnectWise

  • Open the API Member you created above.
  • Navigate to 'API Keys'
  • Select the + New Item button.

  • Enter a description for this API Key.
  • Select Save to generate and display the Public API Key and Private API Key.

 

Setting up your Integration in the ThreatLocker Portal

To set up a custom integration between ThreatLocker and ConnectWise Manage, navigate to Identity > Integrations from the left navigation menu, then select Add Integration at the top of the page.

 

After selecting Add Integration, enter ConnectWise in the search bar, then select it from the search results to open the Add ConnectWise Integration sidebar.

In the 'ConnectWise Settings' tab, you will need to select your ConnectWise Server Url from the dropdown menu.  

You can choose between the North American Cloud, European Cloud, Australian Cloud, or your On-Premise Url if you have one. If you select On-Premise, a textbox will populate and you will need to enter the Url of your On-Premise server.

Note: When entering an on-premises URL, include only the base URL through .com. Do not include any additional paths or pages.
Example: https://connectwise.example.com

You will need to retrieve the Public API Key and Private API Key from your ConnectWise Manage account. 

Input those keys into the corresponding text boxes in the Setup tab.   

 

 

Input your Company ID from ConnectWise into the Company ID text box. This is your login Company ID, not the Company ID from the ConnectWise portal.

 

Click the 'Create' button.

Once the integration details have been entered correctly, the Company Mapping tab will become available.

 

Company Mapping

Select the Type(s) of Company and the Status(es) of Company in your ConnectWise Manage account that you would like to map to your ThreatLocker Organizations. Then click the 'Reload Companies' button.

Select the corresponding ConnectWise Company from the dropdown menu next to each ThreatLocker Organization you want to map.

Note: If an organization does not appear in the dropdown, enter its name in the text box to search for and display it.

After selecting all mapping details, select + Add Mapping. Once the mapping is added, the Ticket Settings and Automation Configuration tabs will become available. Then, select Save in the bottom-left corner.

To prompt ThreatLocker to reload organizations from Connectwise, press the 'Reload Companies' button shown below.

 

Ticket Settings

When an organization has the ConnectWise integration and Ticket settings is set up, then when an approval request is sent to ThreatLocker, a ticket will be generated in their ConnectWise portal.

In the Ticket Settings tab, you can select where you would like your ThreatLocker Approval Requests to be placed within your ConnectWise Manage account.

Select the Board, Source, Type, Subtype, Item, Escalation Status, and Closing Status. ThreatLocker Approval Requests will be sent to the selected location in ConnectWise. After completing your selections, select Save.

Note: To ensure tickets populate in your ConnectWise console, the selected board must have a default member configured in ConnectWise.

Actions taken on a ticket in ThreatLocker, such as approving or denying a request, may take up to 15 minutes to appear in ConnectWise. The ticket will use the Closing Status selected in the Ticket Settings tab.

Important: For tickets closed in ThreatLocker to close automatically in ConnectWise Manage, the selected board must include a status containing the word closed. This requirement is not case-sensitive.

 

Agreement Configuration

The Agreement Configuration section is located in the Automation Configuration tab. Its available options are based on the ConnectWise organization selected in Company Mapping.

First, select an Agreement from the dropdown. The Product dropdown will then populate with the products associated with that agreement. In ConnectWise Manage, these products are listed under Additions.

After completing your selections, select + Add Mapping, and then select Save.

Based on the settings here, the license count for the Organization in ConnectWise will be updated. Each product selected here will be updated in ConnectWise based on the number of computers in ThreatLocker. This count will sync every day so you won't need to manually change the license number in ConnectWise Manage. 

 

 

 

 

Executive Summary

In the Edit ConnectWise Integration sidebar, the Executive Summary settings are located under the Automation Configuration tab and are labeled Configurations.

Currently, you can have a report of the Top 10 Applications permitted in the last 30 days, the Top 10 Applications blocked in the last 30 days, the number of Secured machines, or the number of Unsecured machines sent to your ConnectWise Manage account.

From the options listed, you can select whichever summaries you want to receive in ConnectWise Manage, and click the 'Save' button.

The name of the Configuration Type in ConnectWise Manage is 'ThreatLocker Monthly'.  

 

The name of the Configuration in ConnectWise Manage is 'ThreatLocker Executive Summary'. When you click on 'ThreatLocker Executive Summary' in ConnectWise Manage, the summaries you selected from within the ThreatLocker Integration settings will be visible under 'Configuration Questions'.

Sync Frequency

The Sync Frequency setting is located in the Sync Schedule section of the Automation Configuration tab.

Select Daily or Monthly to determine how often ThreatLocker synchronizes the number of installed or billed computers with the corresponding Product Agreements in ConnectWise Manage.

Was this article helpful?