Discussions related to Microsoft 365 protection.
Post Reply
edibletree
Lurker
Posts: 2
Liked: never
Joined: Apr 08, 2025 3:54 pm
Full Name: Yacer Sellam
Contact:

Ability to restrict customers to roles / Groups

Post by edibletree »

Is there a feature coming to restrict which users have access to what customers on the VDC partner portal?

We currently have our own tenant which the helpdesk shouldn't necessarily see and we have our customers added to the dashboard.

Is there also a way to automatically create SSO users instead of having to initially invite them in? SCIM for example?
martynh
Veeam Software
Posts: 58
Liked: 17 times
Joined: Apr 01, 2021 3:01 am
Full Name: Martyn Howie
Contact:

Re: Ability to restrict customers to roles / Groups

Post by martynh »

Hi Yacer
Is there a feature coming to restrict which users have access to what customers on the VDC partner portal?
There are significant changes coming as part of the move to one VDC UI for all servies. I'll include this as a feature request
Is there also a way to automatically create SSO users instead of having to initially invite them in? SCIM for example?
Do you mean within the partner portal or the customer portal?
For customers we have self-service option or assigning roles by Entra Groups, but for partner portal we don't have that functionality currently.
Martyn Howie

Veeam Data Cloud: Product Management
edibletree
Lurker
Posts: 2
Liked: never
Joined: Apr 08, 2025 3:54 pm
Full Name: Yacer Sellam
Contact:

Re: Ability to restrict customers to roles / Groups

Post by edibletree »

For the partner portal in my case.

Ideally I would have a set of entra groups in our partner tenant and assign users there. Then just assign our helpdesk access to the respective groups

At the moment, I have to invite users individually because user creation is dependent on VDC
micoolpaul
VeeaMVP
Posts: 303
Liked: 137 times
Joined: Jun 29, 2015 9:21 am
Full Name: Michael Paul
Contact:

Re: Ability to restrict customers to roles / Groups

Post by micoolpaul »

Hi,

I want to focus on the second half of your comment here please, around SCIM.

I've spoken to multiple customers that specifically like that user creation is dependent on VDC, it blocks lateral movement if your identity platform was compromised. Even if the user was added to an Entra ID group such as 'VDCAdministrators' (to be unoriginal in my naming), without being explicitly listed as a user this prevents access to the VDC Admin portal.
-------------
Michael Paul
Veeam Data Cloud Solution Engineer - M365 & Entra ID
Post Reply

Who is online

Users browsing this forum: No registered users and 1 guest