Registration
FBR IRIS registration for digital invoicing
Before you can submit digital sales tax invoices, your entity usually needs active IRIS access. Prepare documents first, then follow the portal flow.
Before you start
Registration checklist
Gather these before opening the IRIS portal — most delays are document mismatches, not software issues.
Documents & IDs
- Valid NTN for the business entity
- CNIC of authorized signatory
- Active email address (prefer a monitored inbox)
- Mobile number for OTP verification
Access & authority
- Confirm who is legally authorized to register
- CA firm letter of authority if applicable
- Business bank details if prompted
- Previous FBR correspondence if re-registering
Common blockers
- Mismatched NTN and CNIC records
- Expired or inactive registration status
- Wrong entity type selected
- OTP not received on registered mobile
Portal flow
Typical IRIS registration sequence
Exact screens change — follow on-screen prompts on the official IRIS portal.
Open the portal
Go to the official IRIS site and choose registration or login as appropriate for your entity.
Verify identity
Enter NTN, CNIC, and complete OTP verification on the registered mobile.
Complete the profile
Fill business details, contacts, and any required declarations for your entity type.
Confirm access
Save credentials securely and test login before invoicing go-live or software onboarding.
The part most guides skip
After IRIS: getting digital invoicing credentials
IRIS access is the prerequisite, not the finish line. Enrolling for digital invoicing is a separate sequence inside IRIS, and two steps in it catch almost everyone.
- Log into IRIS and open Digital Invoicing. You choose an integration mode: connecting a system through the API, or generating invoices manually in the portal.
- Choose your connection to FBR. PRAL, or another licensed integrator. The two paths behave differently from here — the PRAL route is largely automatic, while a third-party integrator involves that firm in issuing your credentials.
- Submit technical details, including the IP address you will send from. This is the step that stops projects. On-premise systems need a static public IP from the ISP, and it has to be whitelisted before anything works. It is also the only step in the whole process with a published turnaround: up to two working hours, after which sandbox testing enables itself. Cloud-hosted systems need their outbound address pinned rather than floating.
- Declare your business nature and sector. Two controls on the same screen — business nature allows several selections, sector allows exactly one. They exist only to decide which sandbox test scenarios you are given, and they are worth getting right, because they determine how much testing you have to do.
- Clear the sandbox scenarios you were assigned. See the sandbox guide for how allocation works and why the commonly quoted “28 scenarios” is misleading.
- Receive the production token. On the PRAL path this is issued automatically once your test invoices succeed — there is no review queue and no human sign-off. The token is a static credential valid for five years and tied to one registration number, so a group with several registrations needs one per entity.
Two things that cost people days
Support during sandbox runs is not in IRIS. FBR runs a separate support portal for digital invoicing, with its own login. Teams routinely raise issues in the wrong place, or never discover it exists. Ask for the support portal details at the same time you submit technical details.
The wrong token fails as an authorisation error, not a data error. Because the token is tied to one registration, using another entity’s token returns an access failure that reads nothing like the mapping problem people go looking for.
Screens and labels in IRIS change. Where this guide describes a screen, treat it as the shape of the process rather than a click path, and follow the on-screen prompts.
FAQ
Frequently Asked Questions
What is FBR IRIS?
IRIS is FBR’s integrated online portal for tax registration, returns, and related services. Most businesses need proper IRIS access before digital invoicing go-live.
Who should complete IRIS registration?
Typically the business owner, authorized signatory, or a CA firm acting on behalf of the entity. Confirm who has legal authority for your company before starting.
What do I need before registering?
Valid NTN, CNIC of the authorized person, active email and mobile number for OTP, and any documents FBR requests for your entity type.
Does IRIS registration alone make me digitally invoicing ready?
No. IRIS access is usually a prerequisite. You still need an approved integration path, clean master data, and (for most teams) software or API testing in sandbox before live invoices.
Continue
What comes next
SRO 709 & timeline
Regulatory context for digital invoicing deadlines.
Read moreIntegrator vs software
Choose gateway and day-to-day tools correctly.
Read moreSandbox to go-live
Test after registration — before live customers.
Read moreInvoicing software
Screens and workflows once portal access is ready.
Read moreWho should own IRIS credentials
The coordination and access mistakes that stall registration projects.
Read moreReady to simplify your FBR digital invoicing?
Join 2000+ businesses using eInvoicePro for real-time FBR integration and automated tax compliance.