Microsoft Entra Multi Tenant Collaboration with FULL DEMO

Поділитися
Вставка
  • Опубліковано 29 лис 2024

КОМЕНТАРІ • 107

  • @hhbadarin
    @hhbadarin Рік тому +1

    Thank you for keeping all admins updated! ✌🏼

  • @nathyn81
    @nathyn81 Рік тому +1

    Great tool, I implemented b2b collaboration a while ago for 3 companies using the same building so they could book conference / meeting rooms and utilise the meeting room resources

    • @bassomalik
      @bassomalik 9 місяців тому

      Hello. Late question, but how did you configure that?

  • @77zishan
    @77zishan 4 місяці тому

    I really like the way you teach and present stuff, keep going & love from Switzerland

  • @frankmvabaza
    @frankmvabaza 7 місяців тому

    Hi Andy,
    Thank you for the content shared. Our team is preparing for the MTO & Cross-tenant sync.Your video is very helpful. Thank you again.

  • @noNumber2Sherlock
    @noNumber2Sherlock 7 місяців тому

    Brilliant! Easy to follow with a pleasant voice and cadence. You're excellent! Thank you! Cheers!

  • @Emeka_Nwosu
    @Emeka_Nwosu Рік тому

    From your great Fan! Thanks for all you do for the MS community, Andy

  • @user-zo6iw2oz9c
    @user-zo6iw2oz9c Рік тому

    Awesome video! CTS hopefully can let organizations interact seamlessly.

  • @Fangel090
    @Fangel090 Рік тому +1

    One other thing to mention is if you already had a "Guest" account created in the other tenant before you turned on the multi-tenant mode, then by default that account was created as a "Guest" account, and it will not by default change to a "Member" account. You can either do that manually by editing the attribute in the receiving tenant, or if you go into the Cross tenant sync>>>Open the configuration>>>>select Provisioning>>>Mappings>>>Click provision Azure active directory Users>>>Scroll to the bottom for user type (It will be "Member" by default), click on it and then at the bottom change the "Apply this mapping" from only during object creation to Always. Then next sync it will update them all from guest to member.

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      Great comments thanks 👍

    • @DKTD23
      @DKTD23 10 місяців тому

      @Fangel090 what is the business use case/scenario that you would want to switch all guest accounts over to member accounts?
      Also @AndyMaloneMVP, is there any viable way to know what functionalities have been added or updated by Microsoft? I'm still trying to find more updated information on how GCCH tenants are impacted, and if guest accounts have been impacted or improved by any more recent changes. A lot of information out there even on Tech Community is from 2020-2021, which in some respects is outdated information now.

    • @Fangel090
      @Fangel090 10 місяців тому

      @@DKTD23 By default the new multi-tenant creates the accounts it syncs as members vs a Guest so I was just pointing it out. But there are some advantages to this in terms of how things work in Sharepoint for collaboration, but it also caused some issues in Teams that MS hasn't yet worked out, so we had to force the sync to change everyone to guests to get teams to work ok. Still a lot of bugs with multi-tenant to work out on the MS side as it should make life very easy for synced tenants, but thats still not the case.

    • @DKTD23
      @DKTD23 10 місяців тому

      @Fangel090 what issues with Teams occurred? And why did the collab finction work better in guest mode vs members? If that was commercial to commercial then certainly commercial to gcch or gcch to commercial will likely pose the same issues

  • @ghostofdre
    @ghostofdre Рік тому

    Thanks, would be nice to see cross tenant collab be a little more seamless.
    We have our users use the external ID when adding users to groups and chats in teams, otherwise they add the synced ID and teams never notifies you unless you log in with that ID.

  • @yohannesberehanu3378
    @yohannesberehanu3378 Місяць тому

    You're the best!

  • @dustinsteinle4386
    @dustinsteinle4386 3 місяці тому

    Thanks for the video. I've watched multiple videos on this and can't find and answer if licenses come with you from your parent tenant. Example - power apps, project, power bi, etc. Or do you have to duplicate license in the secondary tenant.

    • @AndyMaloneMVP
      @AndyMaloneMVP  3 місяці тому +1

      A new feature will allow licences users from one tenant to work in another. watch this space soon 👍

    • @dustinsteinle4386
      @dustinsteinle4386 3 місяці тому

      @@AndyMaloneMVP Your reply is much appreciated!!

  • @m88ttc
    @m88ttc Рік тому

    Thanks Andy. I am presuming this would be great for companies that operate under the same umbrella but want to maintain their individual company identity?

  • @chrisph7772
    @chrisph7772 3 місяці тому

    Thanks Andy for this excellent video. Can an external users be granted an email address?

  • @stephenshortland
    @stephenshortland 5 місяців тому

    Great Video. Easy to follow.
    I have a question though, is there an easy way to un-share a user.
    When I click on share, then the cross on the user I cannot save.
    When I go into cross-tenant sync, u sers and groups I can remove assignment for the user. But they remain in the other tenants AD Still

  • @serhatsoyoz446
    @serhatsoyoz446 11 місяців тому

    Does Trust Establishment between Office 365 Tanners happen ?
    For example, we want to be able to see and authorize users of all companies in applications such as sharepoint and planner.

    • @AndyMaloneMVP
      @AndyMaloneMVP  11 місяців тому

      It's called Multi Tenant Collaboration. Check out learn.microsoft.com

  • @marnellej
    @marnellej Рік тому

    Love the video, do I need to assign license to the external user in the parent tenant ? External User has an existing M365 license on the child tenant(home tenant)

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      This is currently in debate at the moment. Yes is the answer but this may change soon.

  • @soodshubham7671
    @soodshubham7671 Рік тому +1

    Thank you Andy :)

  • @fordhamfamilyfarms
    @fordhamfamilyfarms Рік тому

    Love your work andy

  • @auxxxua20
    @auxxxua20 Рік тому

    Great. Thanks Andy.

  • @deepaktripathi4050
    @deepaktripathi4050 Рік тому

    Hi , very good demo. however how is this different from contact

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      It creates a guest account n Entra ID. Contacts do not

  • @derekhanson6565
    @derekhanson6565 Рік тому

    Thanks for the videos and helpful guidance Andy! Question for you on collaboration and specifically for sending messages and making calls in MS Teams to people on other tenants that are part of the multi-tenant synch process. I have this setup and i can locate people from the neighboring tenants. However, when I try to send a message in Teams to someone on an external tenant, it sends normal, but is never received.
    As for Teams calling, the calls start ringing and then show they are automatically getting forwarded to voicemail. I did test a message/call between two users in the same tenant and that worked fine.
    Is there an additional setting/config that needs to be enabled for multi-tenant messages/calls ?

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому +1

      Hmm could be either a licensing or permissions issue. Check external settings in teams, also guest tenant permissions. You e actually given me an idea for another video 👍

  • @okmohammed863
    @okmohammed863 Рік тому

    Thanks Andy, can we use multiple ad connect servers to sync same directories to the separate Tenants

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      The cloud sync tool is great for this but only support Password Hash Sync

  • @santhoshbabumohan7227
    @santhoshbabumohan7227 Рік тому

    Hi Andy,
    Thanks for the excellent video, I have one doubt for the B2B licensing.
    The synced user is a member of B2B tenant(destination), if the user wants to access some power apps mean will the source tenant licenses is enough or again, we need to assign one more license in B2B tenant(destination)?

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому +1

      Gosh I honestly don't know that one! I'd contact MS for this.

    • @santhoshbabumohan7227
      @santhoshbabumohan7227 Рік тому

      Thanks @@AndyMaloneMVP

    • @liam2161
      @liam2161 Рік тому

      We've had to add a licence to the B2B guest to get things like Viva/Yammer working.

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      @@liam2161 Ah there you go. You m delighted you’ve got it working. 👍

  • @naveensstudio7427
    @naveensstudio7427 5 місяців тому

    For the Calendar and contact sharing does all the users need Entra P1 license or only one for the tenant. Please advise

    • @AndyMaloneMVP
      @AndyMaloneMVP  5 місяців тому

      Users licensed in 1 tenant can now carry those licenses into the second. Min P1 requried.

  • @DiogoCosta17
    @DiogoCosta17 4 місяці тому

    I need to allow users from one tenant to see calendar free/busy calendar from both org, see global address lists, chat and send files on teams chat (individual or group) and also to user resource rooms in exchange and book it. It will work only with this integration ?
    Thanks
    One of the tenants only has Microsoft 365 business standard licence, should I buy an extra licence to can have entra p1?
    Thanks

    • @AndyMaloneMVP
      @AndyMaloneMVP  4 місяці тому

      learn.microsoft.com/en-us/microsoft-365/admin/manage/share-calendars-with-external-users?view=o365-worldwide

  • @lifeslooker
    @lifeslooker Рік тому

    If you share users and groups, do you also get to share hardware within each tenant, eg printers? Might be a security risk, printing docs, but can you do this and then determine granularities regarding printing docs deemed/ marked as non-sensitive in Outlook? How would the policies work for sending emails? And what about firewalls? Do any of the tenants firewalls take precedence?

  • @MarkJones-ou4fh
    @MarkJones-ou4fh 4 місяці тому

    Thanks for the video, really helpful. I have just set up a multi tenant collaboration and synced the users. I've also followed the instructions about Tenant restrictions. I am having an issue with Microsoft Forms though. I have a form in the Parent Tenant (A), which is set so that "Only people in A can respond" (as I don't really want to make it open access). I'd hoped that would extend acces to the form to the external users in A that are being synced in from the Child Tenant (B), but users from B can't access the Form via the URL. All users are appropriately licenced in their "home" tenants (and it seems you can no apply licences to the EXT accounts). Have I missed something, or maybe cross tenant collaboration doesn't work for Forms yet?

    • @AndyMaloneMVP
      @AndyMaloneMVP  4 місяці тому +1

      Hmm not sure sorry. Try posting on the Microsoft tech Community.

  • @bengillam86
    @bengillam86 2 місяці тому

    Hi Andy, Thanks for this helpful video i have a couple of questions as I've been asked to look at setting this up and finding a lot of the information on the web a little contradictory.
    In our example we have 7 Microsoft 365 Tenants which are child companies of a lager PLC. They want to use this to share resources like SharePoint and also use with teams.
    1 - Assuming i set up all tenants into the organization will each org get the "shared" users from each other the other 6? Is it possible or does it need extra config. A lot of the content i looked at on cross tenant sync suggested it was one way which sounded like each tenant would need 6 links in and out to others.
    2 - Is any special Licensing required? The parent company currently has Business Premium all round which i think includes Entra P1 - Guests currently mostly business Premium - Would the guests need higher licenses on their own tenant and a license on the destination (parent company tenant) - Initially its teams and sharepoint.
    Hope that makes sense.

    • @AndyMaloneMVP
      @AndyMaloneMVP  2 місяці тому +1

      The feature only supports 5 connections at the moment. Please contact Microsoft support. They may be able to extend for your 7 tenants

    • @bengillam86
      @bengillam86 2 місяці тому

      @@AndyMaloneMVP thanks

  • @raymunddelossantos
    @raymunddelossantos 4 місяці тому

    Confirming that the sync is only one way from Adatum to Contoso? Can it be synced both way or not necessary since Contoso is the host tenant?

    • @AndyMaloneMVP
      @AndyMaloneMVP  4 місяці тому

      As I said in the video one is the primary the rest are secondary

  • @zfold4702
    @zfold4702 5 місяців тому

    Is this approach suitable for B2B scenarios or a SaaS application for enterprises?

  • @alesblinkaice
    @alesblinkaice Рік тому

    Would you know why I cannot see Multitenant collaboration (preview) in Settings > Org settings > Organization profile tab?

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      You must have a business edition, not enterprise.

    • @alesblinkaice
      @alesblinkaice Рік тому

      @@AndyMaloneMVP I have M365 Apps for companies. I guess it is the same case like Enterprise edition, right?

    • @alesblinkaice
      @alesblinkaice Рік тому

      @@AndyMaloneMVP aha, I did not have Entra ID P1 license that is required

  • @ZubairRahim-qf7dr
    @ZubairRahim-qf7dr 23 дні тому

    As an MSSP, we need to access all of our customers' environments within our tenant, but we do not want our customers to have access to our tenant. Can we achieve this using Multitenant Collaboration?

    • @AndyMaloneMVP
      @AndyMaloneMVP  23 дні тому

      I would use Microsoft Lighthouse. Free 👍

  • @lifeslooker
    @lifeslooker Рік тому

    Are you/ have you done a video on MFA Server deprecation? 14:21 into the video, says you need to migrate to Azure AD-MFA before Sept '24 to avoid any service impact

  • @noahpeltier
    @noahpeltier Рік тому

    Does Microsoft's B2B pricing apply to this setup since the users are synced in as members and not guests?

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому +1

      Is this is currently in public preview, no pricing information has been published yet. Hopefully it won’t be too long.

  • @pradeepbasti9588
    @pradeepbasti9588 Рік тому

    between two tenants, T1 and T2, is being labeled as "external." In Microsoft teams, "external" typically indicates communication outside of the immediate organizational or tenant boundary. how we will fix

    • @jgellman
      @jgellman 10 місяців тому +1

      Hi Andy. I have the same question as above. Is there a way to suppress a user from being labeled as "External" when doing multi=tenant collaboration?

    • @DiogoCosta17
      @DiogoCosta17 4 місяці тому

      Yes, same here!

  • @ayazmehboob241
    @ayazmehboob241 Рік тому

    Is cross tenant collaboration available in Microsoft Office 365 Basic Plan?

  • @rangiz99
    @rangiz99 Рік тому

    Is this possible with Exchange? If there is a shared mailbox that both tenants need access to, can you add members of both tenants to the same shared mailbox?

  • @davac002
    @davac002 Рік тому

    Are there any requirements for the multi-tennant setting to show under organization profile? Dont seem to have that setting for our tennancy.

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      It's in preview at the moment, but generally you'd need a P1 or P2 licence.

    • @Fangel090
      @Fangel090 Рік тому

      You also need to have "Targeted release" enabled in every tenant that wants to use this feature currently along with the P1 or P2 license as mentioned above. @davac002 @@AndyMaloneMVP

    • @serhiiparshyn7882
      @serhiiparshyn7882 Рік тому

      @@AndyMaloneMVP , so obviously no way for multi-tenancy in M365 Basic and Standard

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      @@serhiiparshyn7882 correct, although you can manage multiple tenants in Microsoft Lighthouse

  • @usakott
    @usakott Рік тому

    Would synchronized users appear in my global address list in Exchange?

  • @EmmanuelItoje
    @EmmanuelItoje Рік тому

    Awesome 🎉

  • @martinsteresko2036
    @martinsteresko2036 9 місяців тому

    If i have premium apps in my account and would like to help another company. Would my licence stay or will the other company owner need to buy me all the licences? If they need to buy all licence again i don't see a big use case for me.

    • @AndyMaloneMVP
      @AndyMaloneMVP  9 місяців тому

      If you’re talking about assisting them via admin tools, may I recommend that you install Microsoft Lighthouse. In this application you can manage all of your tenants.

  • @richjnsn
    @richjnsn 10 місяців тому

    In the 11:11 mark, when you want to save after you've shared users to the other tenant, you get a message saying "Are you sure you want to save... This change will overwrite any previous configurations settings in Azure Active Directory" - what does that exactly mean? Pretty scary popup...
    Also, how do I remove the group I shared, if I regret it?

    • @AndyMaloneMVP
      @AndyMaloneMVP  10 місяців тому

      Cross tenant aync

    • @richjnsn
      @richjnsn 10 місяців тому

      @@AndyMaloneMVP ah so it will remove the current cross tenant sync config?

  • @noahpeltier
    @noahpeltier Рік тому

    How does this work with users that we sync from On-prem using Azure AD Sync?

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      It’s independent

    • @noahpeltier
      @noahpeltier Рік тому

      @@AndyMaloneMVP so by that do you mean that we won’t be able to sync uses from our tenant to another one because they are on-prem synced?

    • @ManuWue
      @ManuWue Рік тому +1

      @@noahpeltier Asking the same question

    • @DiederikDeReuse
      @DiederikDeReuse 10 місяців тому

      @@noahpeltier This won't interfere with AAD Sync. The Multi Tenant Collaboration basically sets up another sync between the source and destination tenant. Has nothing to do with your onprem to MS365 AADSync.

  • @FerPeláez-k9k
    @FerPeláez-k9k Рік тому

    Thank you for the video! Do you know if Multi Tenant Collaboration allows access to calendars via Scheduling Assistant across tenants? What about Sharepoint access across tenants?

    • @AndyMaloneMVP
      @AndyMaloneMVP  Рік тому

      Yes, you can use SharePoint across multiple tenants

  • @davidcarrico3385
    @davidcarrico3385 Рік тому

    Nice video but I still find this complex and worry about inadvertently opening up a security hole.

  • @FerPeláez-k9k
    @FerPeláez-k9k 11 місяців тому

    Hi Andy! My name is Fer Peláez. I've sent you a note on LinkedIn to inquire about a Microsoft consulting for my business. I would love to chat with you if possible. Thanks!

    • @AndyMaloneMVP
      @AndyMaloneMVP  11 місяців тому

      Hi yes I did receive your message. Unfortunately I had an appointment today. I’m afraid I’m unable to take on this work due to my heavy workload at the moment. I do wish you all the best though and if I may suggest visit Microsoft.com/MVP and you might be able to locate an MVP or a Microsoft partner close to where you live. This may be more appropriate. I wish you all the best and good luck, Andy

    • @FerPeláez-k9k
      @FerPeláez-k9k 11 місяців тому

      No problem. Thanks, @@AndyMaloneMVP !