Cloud App Security uses a single SharePoint Online Delegate Account for both SharePoint Online and OneDrive. If you want to protect both services, provision the Delegate Account under SharePoint Online and OneDrive respectively to add required data about both services to the Delegate Account.
During provisioning, Cloud App Security allows you to synchronize:
-
All SharePoint site collections and/or OneDrive users and groups of your organization
-
Certain SharePoint site collections and/or OneDrive users of your organization for testing purposes
You need to use the same option when provisioning a service account for Exchange Online, SharePoint Online, and OneDrive, that is, to either synchronize all targets or synchronize certain targets.
For service account provisioning with certain targets synchronized, Cloud App Security does not support manual synchronization and scheduled synchronization.
The steps outlined below detail how to provision a SharePoint Online Delegate Account for SharePoint Online first and then OneDrive from Dashboard.
- Log on to the Cloud App Security management console.
-
Perform the following steps to provision for SharePoint Online.
-
Perform the following steps to provision for OneDrive.
-
On the Notifications screen, click Extend to protect all your Office 365 service targets..
-
On the screen that appears, view the instructions and click Submit.
-
Go to Advanced Threat Protection or Data Loss Prevention, and open an ATP or DLP policy of each service you want to extend the protection to, that is, Exchange Online, SharePoint Online, or OneDrive.
-
Select the General tab and click Click here to manually synchronize all your targets.
After clicking Submit, you can also wait until the next day because Cloud App Security automatically synchronizes with your Office 365 environment once per day.