AudioCodes Active Directory Tenant Group Mapping
Live Platform enables large Enterprises to deploy a single Azure tenant and map it to multiple Azure groups defined on the same tenant. New customers are onboarded to represent each managed group. The groups logically represent Organization Active Directory attributes, for example, departments. M365 users are then mapped to the customer groups through a Live Cloud database query of the Active Directory attributes of the M365 users. When the group administrator or operator logs into Live Platform portal, they only view the queried M365 users and their related data (alarms, statistics and calls). This feature may implemented using the following topologies:
|
■
|
Service provider manages multiple channel groups |
|
■
|
Channels manage multiple customer groups |
|
■
|
Service provider manage multiple customer groups |
This feature provides the following benefits:
|
■
|
Allows Global parent corporate groups to manage affiliate entities in the same Active Directory tenant. |
|
■
|
Saves setup and administrative costs through the management of a single tenant Azure registration. |
|
■
|
Mitigates security risks through the registration to a single tenant ID with a single DNS entry (Online PSTN Gateway). |
|
■
|
Automates inheritance of permissions and roles for group administrators and operators. |
|
■
|
Automates filtering of M365 users and their data in the Live Platform portal. |
|
■
|
Improves database performance through synchronization only according to the queried filter criteria. |
The following diagram illustrates an example topology:
|
■
|
The managed tier hierarchy is Service Provider > Channel > Customers. |
|
■
|
Three groups are created on the Channels' Azure tenant: |
|
●
|
Channel_Admin with 'Admin' member 'Lee Gu' |
|
●
|
'Admin_R&D' group with customer operator 'Adele Vance' |
|
●
|
'Admin_Executive Management' group with customer operator 'Alex Wilber' |
|
■
|
Database query filters are defined for each of the departments "R&D" and "Executive Management". |