Cohesity Alta SaaS Protection 2.x.x Administrator's Guide
- Introduction to Cohesity Alta SaaS Protection
- API permissions
- Administrator portal (Web UI)
- Manage users and roles
- What is a connector?
- Configure credentials
- Pre-requisites for Microsoft 365 connectors
- Protect Microsoft 365 Multi-Geo tenant
- Protect Exchange Online data
- Protect SharePoint sites and data
- Protect Teams sites
- Protect OneDrive data
- Protect Teams chats
- Protect GoogleDrive data
- Protect Gmail data
- Protect Audit logs
- Protect Salesforce data and metada
- Protect Entra ID objects
- Protect Box data
- Protect Slack data
- Protect Email/Message data
- Configure Retention policies
- Perform backups
- View and share backed-up data
- Analytics
- Perform restores using Administration portal
- Restore SharePoint/OneDrive/Teams Sites and data
- Restore Teams chat messages and Teams channel conversations
- Restore Box data
- Restore Google Drive data
- About Salesforce Data, Metadata, and CRM Content restore and Sandbox seeding
- About Entra ID (Azure AD) objects and records restore
- Restore dashboard
- Install services and utilities
- About the Apps Consent Grant Utility
- Discovery
- Configure Tagging polices
- Configure Tiering policy
- Auditing
- Manage Stors (Storages)
App permissions of Web App
The following optional claims are included in the access token. Cohesity Alta SaaS Protection uses an OpenID Connect-based authentication layer, where these claims support effective authentication and authorization, especially for SIEM integrations. These claims provide information about the user but do not grant additional access. They are required if a Web App is deployed.
Table:
Permission | Used by Cohesity Alta SaaS Protection | |||
---|---|---|---|---|
User.Read | User.Read | Delegated | Sign in and read the user profile. | To include in the access token. |
profile | profile | Delegated | View users' basic profile. | To include in the access token. |
openid | openid | Delegated | Sign users in. | To include in the access token. |
offline_access | offline_access | Delegated | Maintain access to data you have given it access to. | To include in the access token. |