Cloud App Security protects the following
services:
-
Microsoft 365 services, including Exchange Online, SharePoint Online, OneDrive, and Microsoft Teams
-
Google Workspace, including Google Drive and Gmail
-
Cloud storage applications, including Box and Dropbox
-
CRM platform, which is Salesforce
Cloud App Security requires service accounts
to integrate with those applications and services that it protects. The service
accounts can be categorized as:
-
Delegate accounts to integrate with Exchange Online, SharePoint Online, and OneDrive
-
Authorized accounts to integrate with Exchange Online, SharePoint Online, OneDrive, Microsoft Teams (Teams and Chat), Box, Dropbox, Google Drive, Gmail, and Salesforce
In Cloud App Security, go to , click Add, hover over the organization for which you
need to grant access to services, and select a service from the list that appears
on the right
side.
NoteIf you have granted Cloud App Security access to a service in the organization, Cloud App Security grays it out on the list to prevent it from being
selected again.
|
After you have granted Cloud App Security access to Microsoft 365 services for an organization, you can view the name of the
Microsoft tenant associated with the organization.
NoteIf you have Trend Vision One, when you add a tenant in Cloud App Security automatically associates the tenant with an organization with no service to which
Cloud App Security has been granted access. If there is no such organization, Cloud App Security creates an organization and associates it with the tenant.
, |
Re-creating an access token for Microsoft 365 services and Gmail
If the access token becomes invalid for any reason or you need to refresh the existing
token, re-create an access token to continue using the service account.
The following procedure uses Exchange Online as an example to outline how to re-create
an access token in the management console.
Note
|
Procedure
- Click Recreate Access Token under Status of the Exchange Online service account.
- On the Recreate Access Token for Exchange Online Service Account screen that appears, click Grant Permission, specify your Microsoft 365 Global Administrator credentials to sign in if prompted, and then click Accept on the screen that appears.
- Go back to the management console as instructed and verify that a checkmark icon appears for the step, indicating that the access token and the service account are valid.
- Click Close.