Provision a service account for Microsoft Teams (Chat) to allow Cloud App Security to run advanced threat protection and data loss prevention scanning on messages and files in protected private chats.
Cloud App Security protects the Teams and Chat services in Microsoft Teams separately.
As Microsoft's licensing models for Teams APIs impose usage restrictions and licensing requirements on API calls, you need to use your own app registered with Azure AD and select an applicable licensing model when provisioning Teams Chat. For details about the licensing models, see Microsoft Documentation.
The following table summarizes the licensing models and the supported Cloud App Security protection under each model.
Model |
Licensing and Payment Requirements |
Supported Cloud App Security Protection |
---|---|---|
Model A |
|
|
Model B |
|
|
Evaluation Mode |
No license or payment required |
Note:
As this model provides limited API calls, Cloud App Security can scan and take action on only a limited number of messages and files. |
If you have already provisioned Teams Chat in the old way without creating your own app, Evaluation Mode applies. Trend Micro recommends that you update the provisioning to have access to all the licensing models and continued Cloud App Security protection by performing the following:
Go to Administration > Service Account, locate your Teams Chat service account, click Protect with Your Own App, and complete the provisioning by referring to the operations in this topic.
Private chat files are stored in the sender's OneDrive folder. If you have also provisioned a OneDrive service account, when the user sending or uploading a file is selected as a policy target respectively, Cloud App Security applies the corresponding policies for Teams Chat and for OneDrive to this file.
The steps outlined below detail how to provision a service account for Teams Chat from Dashboard.
The Provision Service Account for Teams Chat screen appears.
For details, see Creating an Azure AD App for Teams Chat Protection.
The Microsoft authorization screen appears.
Cloud App Security then updates the Teams Chat data in your organization. The time required depends on how much data you have in Teams Chat.
If the message "Teams Chat protected." appears on the Notifications screen, the provisioning is successful.