Cloud Provider Authorization - Entra ID App Registration

Prev Next

This document describes the steps to complete the process for authorizing Microsoft as a Corporate Cloud Provider within the eSHARE Admin Console.

NOTE:

Ensure the instructions outlined in Create eSHARE Entra ID App Registration have been completed, otherwise these steps cannot be completed.

Authorize Microsoft for Cloud Storage Services

  1. Navigate to your eSHARE Cloud Web Portal (ex. https://secure.eshare.com)

  2. Select the ‘Admin console’ > ‘Corporate cloud providers’ tab.

  3. On the top right of the page, select ‘+ Add…’  and select ‘Graph’.

  1. Next, input your Microsoft 365 Tenant ID and select the ‘Get own app’ button.

  1. The following three pieces of information will need to be entered to create the connection:

    1. Application ID - Input the application (client) ID of the App Registration which was created for eSHARE.

    2. Thumbprint of your certificate - Input the thumbprint of the certificate uploaded to Microsoft Entra console for the eSHARE application.

    3. Private Key - Open the private key (.key file) of the above certificate in Notepad, copy the text and paste it in this section.

  2. When done, select ‘Use own app’ again.

  1. A green bar will flash on the screen indicating the corporate cloud provider was successfully enabled.

  2. Verify that OneDrive is now enabled and available for further configuration.

Authorization for Document Labels API

REQUIREMENT:

The Person performing these steps must have an administrator role assignment of Application Administator, Cloud Application Administator, or Global Administator in the destination M365 tenant.

Authorization for Document Labels API allows eSHARE to read Microsoft Sensitivity Labels deployed in your tenant and the labels applied to documents, SharePoint sites, Teams, Groups, etc.

  1. Navigate to ‘Admin console’ > ‘Corporate cloud providers’ tab.

  2. Find the slider for ‘Enable querying Microsoft about Document Labels’ and enable the switch to ‘ON’.

  1. You will be redirected to your Microsoft 365 tenant to sign in, if you are not already signed in

  2. A prompt is displayed indicating the permissions for which the custom tenant app is being authorized

  1. Select the ‘Accept’ button to continue with the authorization process.

  2. Upon successful completion, you will be redirected back to the eSHARE admin portal. The feature status should now show ‘ON’ status.

  3. Switch to the ‘Labels and Tags’ tab to confirm the MIP labels in your tenant are displayed.