Table of Contents
FBR IRIS Setup
Before TaxConnect can submit invoice data to FBR's digital invoicing service, you must complete the applicable setup in the FBR IRIS portal. This guide walks you through the required steps: submitting technical details, retrieving your sandbox token, and preparing for production access.
Know the roles: PRAL (Pakistan Revenue Automation Limited) is the FBR connectivity, licensed-integrator, and API layer used for this process. TaxConnect is a separate software product — it is not PRAL — that connects your accounting data to the configured FBR/PRAL service. PRAL does not create invoices. For current reference information, use the official FBR website and PRAL's official website.
Before you start
You need a registered FBR taxpayer account with access to IRIS. Have your organisation details and the current technical values supplied during your TaxConnect onboarding or by the licensed integrator ready. Do not use an old IP address, server location, or screenshot from another setup: these values and the fields shown by IRIS can change.
Step 1 — Log in to IRIS
Begin by navigating to the official FBR IRIS portal and signing in with your taxpayer credentials.
- Open your browser and go to iris.fbr.gov.pk.
- Sign in using your FBR taxpayer credentials (your NTN-linked username and password).
- From the main dashboard menu, locate and click Digital Invoicing. If you do not see this option, your account may not yet be enrolled in the e-invoicing programme — contact FBR or your tax practitioner to request enrolment.
Once you are inside the Digital Invoicing section, you will see the integration management area where the remaining steps take place.
Published technical values
Published technical values
IRIS labels can vary by portal version, so use the closest matching field if the wording is slightly different. The approved values for this setup are:
- IP address:
72.60.196.141— this is TaxConnect's integration/server IP. Clients should not enter their office, home, or public IP unless FBR specifically requests separate organisation network information. - System/application:
TaxConnect - Hosting country:
Malaysia - Licensed integrator:
PRAL
Step 2 — Submit technical / whitelisting details
Before the FBR sandbox environment accepts connections from your configured integration, submit the technical details requested by IRIS. The exact fields and approval path can vary by portal version and by the integration scenario assigned to your organisation.
- Inside Digital Invoicing, open API Integration. Depending on your IRIS portal version, this may also appear as PRAL Integration.
- If prompted to choose a licensed integrator, select PRAL where that is the option assigned to your organisation. This identifies the FBR/PRAL connectivity layer; it does not mean that TaxConnect is PRAL.
- Fill in the technical details form using the published values above. Depending on the form, this may include the IP address, application name, hosting location, and any other fields shown for your organisation.
- Review the information for accuracy and submit the form.
After submission, the IRIS portal processes your request. Sandbox access becomes available after the applicable FBR/PRAL approval or provisioning step for your integration scenario. You can check the status by returning to the API Integration page.
Tip:If the form asks for additional fields such as contact person or technical email, use the details of your organisation's nominated technical contact. These are used by FBR/PRAL to reach you if there are issues with your integration.
Step 3 — Get your sandbox token
Once your technical details are approved, the sandbox environment becomes accessible. You can now retrieve your sandbox security token and enter it into TaxConnect.
- In the IRIS portal, navigate to the Sandbox Environment section within Digital Invoicing.
- Click Web API Details to view your sandbox credentials.
- Copy the sandbox token (also labelled as security token or API token depending on the portal version). Store it somewhere safe — you will not see the full token again after navigating away.
- Open TaxConnect and go to Invoices → select your organisation → click the settings cog → Integrations tab.
- Paste the token into the Sandbox Token field and click Save.
Once saved, TaxConnect will use this token for sandbox communication with the FBR API, subject to the scenario and token assignment shown in your portal. You can verify the connection by running a sandbox test — see the Sandbox Testing guide for details.
Step 4 — Prepare for production
Sandbox testing must be completed before production tokens are issued. FBR and PRAL may require evidence that your integration works correctly in the sandbox before they release production credentials, depending on the scenario assigned in IRIS.
- Complete the required or assigned scenarios shown in IRIS/TaxConnect (see the Sandbox Testing guide) before proceeding.
- Return to the IRIS portal and navigate to Digital Invoicing → API Integration → Production Environment.
- Open Web API Details and copy the production token shown there.
- In TaxConnect, go to Invoices → select your organisation → settings cog → Integrations tab, paste the production token into the Production Token field, and save.
Your production token is now stored in TaxConnect. Refer to the Sandbox Testing guide and the Production Go-Live documentation for the next steps — including switching your organisation from sandbox-only to active mode and submitting your first live invoice, where applicable to the portal-assigned production flow.
Note:FBR document links and IRIS portal wording may change over time. Always refer to the latest material published by FBR and PRAL. Current reference documents include the Digital Invoicing User Manual v1.5 and Technical Documentation for DI API v1.12; use the latest versions available in IRIS. These sources describe the connectivity and API process; PRAL is not the system that creates your invoices.