...
App feature | Enterprise app client id | Scopes |
---|
Email | e7185a25-9df9-4d05-b779-76b04bf46424
| Code Block |
---|
Mail.ReadWrite.Shared
Mail.Send.Shared
People.Read
User.Read
User.ReadBasic.All |
Approve for all users |
Meetings | e7185a25-9df9-4d05-b779-76b04bf46424
| Code Block |
---|
Calendars.ReadWrite
Calendars.ReadWrite.Shared
MailboxSettings.Read
OnlineMeetings.ReadWrite
People.Read
User.Read
User.ReadBasic.All |
Approve for all users Necessary for certain features to work, e.g. searching for rooms Approve for all users (incl. optional) |
Calendar | e7185a25-9df9-4d05-b779-76b04bf46424
| Code Block |
---|
Calendars.ReadWrite
Calendars.ReadWrite.Shared
MailboxSettings.Read
OnlineMeetings.ReadWrite
People.Read
User.Read
User.ReadBasic.All |
Approve for all users Necessary for certain features to work, e.g. searching for rooms & embedding Teams channel calendars Code Block |
---|
Place.Read.All
Group.ReadWrite.All
Team.ReadBasic.All |
Approve for all users |
To Do | 32d752a1-8945-4600-97c9-73ed32c3627a
| Code Block |
---|
Tasks.Read
Tasks.ReadWrite
Tasks.ReadWrite.Shared
User.Read |
Approve for all users |
Teams | 89d5ca9f-d63b-4885-bd30-6e7433c1540c
| Code Block |
---|
Channel.ReadBasic.All
ChannelMessage.Send
Chat.ReadWrite
Team.ReadBasic.All
User.Read
User.ReadBasic.All
Presence.Read.All |
Approve for all users |
Teams JSM portal | a47ed889-74d6-4acf-b5c8-b1172696eb70
| Approve for all users |
Teams JSM portal notifications | 89d5ca9f-d63b-4885-bd30-6e7433c1540c
| Code Block |
---|
TeamsTab.Create
AppCatalog.Read.All
TeamsAppInstallation.ReadWriteForChat |
Since the portal link is an individual link we can’t provide a direct link to approve for all users. Feel free to see our docs to get the direct link: Approve for all users |
...
App feature | Approval link | |
---|
Email | https://login.microsoftonline.com/organizations/v2.0/adminconsent?client_id=e7185a25-9df9-4d05-b779-76b04bf46424&state=no&redirect_uri=https%3a%2f%2fatlassianconnect.yasoon.com%2fauth-success.html&scope=email%20offline_access%20profile%20openid%20Mail.ReadWrite.Shared%20Mail.Send.Shared%20People.Read%20User.Read%20User.ReadBasic.All
| |
Meetings | https://login.microsoftonline.com/organizations/v2.0/adminconsent?client_id=e7185a25-9df9-4d05-b779-76b04bf46424&state=no&redirect_uri=https%3A%2F%2Fatlassianconnect.yasoon.com%2Fauth-success.html&scope=email offline_access profile openid Calendars.ReadWrite Calendars.ReadWrite.Shared MailboxSettings.Read OnlineMeetings.ReadWrite People.Read User.Read User.ReadBasic.All
With room support https://login.microsoftonline.com/organizations/v2.0/adminconsent?client_id=e7185a25-9df9-4d05-b779-76b04bf46424&state=no&redirect_uri=https%3A%2F%2Fatlassianconnect.yasoon.com%2Fauth-success.html&scope=email offline_access profile openid Calendars.ReadWrite Calendars.ReadWrite.Shared MailboxSettings.Read OnlineMeetings.ReadWrite People.Read User.Read User.ReadBasic.All Place.Read.All
| |
Calendar | Only mandatory scopes: https://login.microsoftonline.com/organizations/v2.0/adminconsent?client_id=e7185a25-9df9-4d05-b779-76b04bf46424&state=no&redirect_uri=https%3A%2F%2Fatlassianconnect.yasoon.com%2Fauth-success.html&scope=email offline_access profile openid Calendars.ReadWrite Calendars.ReadWrite.Shared MailboxSettings.Read OnlineMeetings.ReadWrite People.Read User.Read User.ReadBasic.All
With Teams channel calendar, group & room support https://login.microsoftonline.com/organizations/v2.0/adminconsent?client_id=e7185a25-9df9-4d05-b779-76b04bf46424&state=no&redirect_uri=https%3A%2F%2Fatlassianconnect.yasoon.com%2Fauth-success.html&scope=email offline_access profile openid Calendars.ReadWrite Calendars.ReadWrite.Shared MailboxSettings.Read OnlineMeetings.ReadWrite People.Read User.Read User.ReadBasic.All Place.Read.All Group.ReadWrite.All Team.ReadBasic.All
| |
To Do | https://login.microsoftonline.com/organizations/v2.0/adminconsent?client_id=32d752a1-8945-4600-97c9-73ed32c3627a&state=no&redirect_uri=https%3a%2f%2fatlassianconnect.yasoon.com%2fauth-success.html&scope=email%20offline_access%20profile%20openid%20Tasks.Read%20Tasks.ReadWrite%20Tasks.ReadWrite.Shared%20User.Read
| |
Teams | https://login.microsoftonline.com/organizations/v2.0/adminconsent?client_id=89d5ca9f-d63b-4885-bd30-6e7433c1540c&state=no&redirect_uri=https%3a%2f%2fatlassianconnecthttps%3A%2F%2Fatlassianconnect.yasoon.com%2fauthcom%2Fauth-success.html&scope=email%20offline_access%20profile%20openid%20Channelemail offline_access profile openid Channel.ReadBasic.All%20ChannelMessageAll ChannelMessage.Send%20ChatSend Chat.ReadWrite%20TeamReadWrite Team.ReadBasic.All%20UserAll User.Read%20UserRead User.ReadBasic.All Presence.Read.All
| |
Teams JSM portal | https://login.microsoftonline.com/organizations/v2.0/adminconsent?client_id=a47ed889-74d6-4acf-b5c8-b1172696eb70&state=no&redirect_uri=https%3a%2f%2fatlassianconnect.yasoon.com%2fauth-success.html&scope=email%20offline_access%20profile%20openid%20User.Read
| |
...
Approving access for a limited set of users
Using Entra ID configurations
Please go to https://entra.microsoft.com/ → Applications → Enterprise applications and search for our apps.
There are basically three steps to allow the app only for certain users:
Make assignment of the app required. This way only assigned users will be able to login in the first place.
Assign the relevant users to the app
Grant admin consent for the app for the organization
→ Only the assigned users can login and don’t need to ask for approval:
Iframe |
---|
scrolling | no |
---|
allowfullscreen | true |
---|
src | https://yasoon.storylane.io/share/mq86xkdgvexg |
---|
width | 100% |
---|
name | sl-embed |
---|
style | position:absolute;top:0;left:0;border:1px solid rgba(63,95,172,0.35);box-shadow: 0px 0px 18px rgba(26, 19, 72, 0.15);border-radius:10px;box-sizing:border-box;aspect-ratio: 1.72 / 1; |
---|
frameborder | hide |
---|
id | sl-embed |
---|
class | sl-demo |
---|
height | 100% |
---|
|
Using Powershell
In case you only want to approve the access for a limited set of users, e.g. you already have a dedicated AzureAD group for Jira users, you’ll need to do this via a Powershell script. The easiest way is to create a new .ps1 file on your computer and paste the following code. Make sure to adjust the client ids and scopes according to the table above.
...