Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 18 Current »

Creating PowerShell Account

READ THIS BEFORE PROCEEDING

This guide only applies to GCC High Environment types.
For Commercial Environments, follow this guide.

  • For GGC High env't, unattended sign-in are required and 3rd party SSO and MFA must be disabled.

  • Make sure you are logging into your Microsoft 365 Admin center using an account with administrative privileges.

  1. Login as an administrator to the Microsoft 365 admin center

  2. Go to Users

    Microsoft 365 admin center user interface with arrows pointing to the User menu and Add a user option
  3. Go to Add a user

  4. Create the new account

    1. Fill out the Basics section

    2. Under Product Licenses, select Create user without product license option

    3. Under Optional Settings, select Admin center access and enable Team Administrator checkbox

    4. Complete the account creation

You can now start using your new service account in ZPM if you do not have Multi Factor Authentication.

If you do have MFA, please follow the steps on the next section as well.

Disabling Multifactor Authentication Service Settings

Once the account is setup, if you have Multi Factor Authentication enabled in your organization, it will need to be disabled or modified for the above created account.

Method 1: Disable MFA for the account

  1. Connect to your Microsoft Azure tenant

  2. Go to the Users section and find the account you initially created

  3. Click on Disable

You can now use your new service account in ZPM without MFA

Method 2: Whitelist the IP of the ZPM machine

  1.  Login as an administrator to the Microsoft 365 admin center, search for the account you created and click on Manage Multifactor Authentication

  2. Click on service settings

  3. Add the IP or IP range from which requests originating from ZPM to Microsoft 365 will be placed as a trusted IP to ensure the service account can bypass MFA

You can now use your new service account in ZPM without MFA

  • No labels