Arctera™ Insight Management Console Help
- Getting started
- About Arctera Insight Management Console
- Prerequisites for using Arctera Insight Management Console
- Arctera Insight Management Console web browser support
- What's new in this release
- Signing in to Arctera Insight Management Console
- Signing out from Arctera Insight Management Console
- Resetting a forgotten password
- Changing your profile password
- Archive Overview
- Working with Dashboard
- Managing Configurations
- About the Configuration page
- Viewing provisioned services
- Selecting options to provision and manage user accounts
- About Provisioning
- CloudLink Sync Summary
- About Managed Tags
- About Account Management
- Searching for archive accounts
- Using search filters
- Creating an archive account
- Viewing and editing the archive account details
- About the Account Details page
- Editing an archive account
- Deleting an archive account
- Deploying users
- Enabling services for existing archive accounts
- Configuring the Manage Your Own Keys (MYOK) Feature
- Removing user access
- Disabling bulk user accounts
- Editing Mobile Web Access permission for existing archive accounts
- Unlocking an archive account
- Exporting archive account information
- Editing contact details of a system administrator
- Managing InsightBooks permissions
- Managing Archive Collectors
- About Archive Collectors
- Adding new archive collectors
- Updating configuration of existing archive collectors
- Stopping or restarting import job of archive collectors
- Viewing the latest status of Archive Collectors
- Cloning archive collectors
- Deleting an existing archive collector
- Deleting a history of archive collectors
- About Exchange Online Archiving
- Setting up modern authentication in Azure AD for Exchange Online sync
- Configuring Exchange Online sync
- About Exchange Online folder synchronization
- Prerequisite for migrating Exchange Online Users configured with Folder Sync to Exchange Online Folder Synchronization
- Configuring Exchange Online folder synchronization
- Configuring Microsoft Azure Active Directory Group synchronization
- About Bloomberg Archiving
- About Google Chat Archiving
- About Google Workspace Archiving
- About SCIM Archiving
- About Import Collector
- About Insight Capture Services Archiving
- About Microsoft Teams (Audio Video) Archiving
- About Audio-Video Archiving
- About Audio-Video Archiving using NTR-X Collectors
- About Dubber Speik SMS Archiving
- About Dubber Speik Recordings Archiving
- About Text-Delimited Archiving
- About XSLT-XML Archiving
- About JSON Archiving
- About iMessage Archiving
- About LinkedIn Archiving
- About Signal Archiving
- About Verint Archiving
- About WeChat Archiving
- About WhatsApp Archiving
- About Cloud9 Archiving
- About Verba Archiving
- About Copilot Archiving
- About Zoom Phone Archiving
- Managing Roles and Permissions
- Managing Policies
- About Policy Management
- Configuring archive options
- Enabling and disabling account archiving
- Configuring the InsightAI feature
- Configuring an advanced password policy
- Configuring trusted networks for Arctera Insight Archiving access
- Managing Custom Headers
- Managing Discard Rules
- Managing Index Exclusion
- Managing Authentication
- Configuring the Arctera Insight Archiving authentication service
- Enabling the Authentication Settings permission for the Policy Manager role
- Assigning the Policy Manager role to an administrator
- Selecting an authentication method
- Uploading a -signing certificate
- Validating the Identity Provider URL
- Activating single sign-on
- Managing Retention Policies
- About Retention Management
- Supported retention scenarios for WORM and non-WORM Insight Archiving customers
- Configuring the default retention period
- Creating a retention policy
- Editing a retention policy
- Deleting a retention policy
- Associating a retention policy with a policy target
- Disassociating a retention policy from a policy target
- Enabling and disabling the storage expiry setting
- Viewing the storage expiry status table
- Managing Email Continuity Services
- About Email Continuity
- Email Continuity prerequisites
- Configuring Email Continuity
- Provisioning the Email Continuity service for your mail servers
- Adding the Email Continuity IP ranges to your firewall and mail server allowlists
- Updating your email security provider routing configuration
- Testing the Email Continuity configuration
- Managing Email Continuity
- Email Continuity FAQ
- Managing Reports and Notifications
- Classification
- Managing Data Import
- AD FS Configuration Guide
Configuring Microsoft Azure Active Directory Group synchronization
Active Directory Group synchronization is an additional service for Arctera Insight Archiving. After configuring, it synchronizes user groups, nested groups, and their respective users between Microsoft Azure AD and the Arctera Insight Archiving database. This synchronization is unidirectional, occurring solely from Azure AD to the Arctera Archiving database.
To configure Microsoft Azure AD Group synchronization
- In the left navigation pane, select Configuration > User Management.
Ensure that the Using Microsoft Office 365 check box is selected. Click Save and then click Go To Next Step.
- In the left navigation pane, select Archive Collectors, and do any of the following:
To add a new Exchange Online collector, click Add Collector.
To edit configuration of an existing collector, select the Exchange Online collector, click the kebab icon and click Manage.
- On the Credential Management page, perform the actions mentioned in the next steps.
- Configure O365 Account Synchronization. See Configuring Exchange Online sync.
- After configuring O365 Account synchronization, expand the Active Directory Group Sync Configuration section, and specify the following details:
Use the same credential as O365 Sync
Select this check box if you want to utilize the same credentials that you have used for O365 account synchronization.
The Client ID and Tenant Name values that are utilized during O365 account synchronization appears automatically in the corresponding fields.
Client ID
Client ID (or Azure AD App ID) is a unique identifier generated during modern authentication setup in Azure AD. Enter the Azure AD App ID.
The configured Azure AD needs the following permissions to fetch the client ID.
Mandatory permission required : User.Read.All
Any one of the following (from least to most privileged) permissions required:
GroupMember.Read.All
Group.Read.All
Directory.Read.All
If required, refer to the Microsoft help on Graph Permissions
Tenant Name
Tenant name is a Primary Domain for the Azure AD tenant. Enter the primary domain ID.
You can get this ID from the Tenant Information section on the Overview page of Azure AD portal.
Choose certificate > Use new certificate
Certificate is the Self-signed .PFX file.
Select this option to upload a new certificate. Click Choose Certificate to select the appropriate certificate, and provide the password. This is a password used for the self-signed certificate.
Choose certificate > Use existing certificate
Select this option to upload an existing certificate.
If a certificate is already uploaded, this option is selected by default. The thumbprint and expiry details of the certificate appears automatically.
Thumbprint
Specify the certificate's thumbprint for validation purposes.
Expires on
Specify the certificate's expiration date.
- Click Test to verify connection with the O365 account.
- If the tested connection is successful, click Save to navigate to the Provisioning and Configuration tab.
- Ensure that the Active Directory Groups tab appears on the Exchange Online page. Select the tab to view the synchronized Active Directory Groups.
- Select the Job List tab to view your folder synchronization job progress and status for Exchange Online, Folder Sync, and AD Groups.