Important Update: Cohesity Products Documentation
All Cohesity product documentation are now managed via the Cohesity Docs Portal: https://docs.cohesity.com/HomePage/Content/home.htm. Some documentation available here may not reflect the latest information or may no longer be accessible.
Arctera™ Management Console Help
- Getting started
- About Arctera Management Console
- Prerequisites for using Arctera Management Console
- Arctera Management Console web browser support
- What's new in this release
- Signing in to Arctera Management Console
- Signing out from Arctera Management Console
- Resetting a forgotten password
- Changing your profile password
- Archive Overview
- Working with Dashboard
- Managing Configurations
- About the Configuration page
- Viewing provisioned services
- Selecting options to provision and manage user accounts
- About Provisioning
- CloudLink Sync Summary
- About Managed Tags
- About Account Management
- Searching for archive accounts
- Using search filters
- Creating an archive account
- Viewing and editing the archive account details
- About the Account Details page
- Editing an archive account
- Deleting an archive account
- Deploying users
- Enabling services for existing archive accounts
- Configuring the Manage Your Own Keys (MYOK) Feature
- Removing user access
- Disabling bulk user accounts
- Editing Personal Archive Mobile Web Access permission for existing archive accounts
- Unlocking an archive account
- Exporting archive account information
- Editing contact details of a system administrator
- Managing InsightBooks permissions
- Managing Archive Collectors
- About Archive Collectors
- Adding new archive collectors
- Updating configuration of existing archive collectors
- Stopping or restarting import job of archive collectors
- Viewing the latest status of Archive Collectors
- Cloning archive collectors
- Deleting an existing archive collector
- Deleting a history of archive collectors
- About Exchange Online Archiving
- Setting up modern authentication in Azure AD for Exchange Online sync
- Configuring Exchange Online sync
- About Exchange Online folder synchronization
- Prerequisite for migrating Exchange Online Users configured with Folder Sync to Exchange Online Folder Synchronization
- Configuring Exchange Online folder synchronization
- Configuring Microsoft Azure Active Directory Group synchronization
- About Bloomberg Archiving
- About Google Chat Archiving
- About Google Provisioning Archiving
- About Google Collection Archiving
- About ChatGPT conversation data Archiving
- About Google Messages Archiving
- About SCIM Archiving
- About Import Collector
- About Arctera Capture Services Archiving
- About Microsoft Teams (Audio Video) Archiving
- About Audio-Video Archiving
- About Audio-Video Archiving using NTR-X Collectors
- About Dubber Speik SMS Archiving
- About Dubber Speik Recordings Archiving
- About Text-Delimited Archiving
- About XSLT-XML Archiving
- About JSON Archiving
- About EML Archiving
- About iMessage Archiving
- About LinkedIn Archiving
- About Signal Archiving
- About Verint Archiving
- About WeChat Archiving
- About WhatsApp Archiving
- About Cloud9 Archiving
- About Verba Archiving
- About Copilot Archiving
- About Zoom Phone Archiving
- Managing Roles and Permissions
- Managing Policies
- About Policy Management
- Configuring archive options
- Enabling and disabling account archiving
- Configuring the InsightAI feature
- Configuring an advanced password policy
- Configuring trusted networks for Arctera Unified Platform access
- Managing Custom Headers
- Managing Discard Rules
- Managing Index Exclusion
- Managing Authentication
- Configuring the Arctera Unified Platform authentication service
- Enabling the Authentication Settings permission for the Policy Manager role
- Assigning the Policy Manager role to an administrator
- Selecting an authentication method
- Uploading a -signing certificate
- Validating the Identity Provider URL
- Activating single sign-on
- Managing Retention Policies
- About Retention Management
- Supported retention scenarios for WORM and non-WORM Arctera Unified Platform customers
- Configuring the default retention period
- Creating a retention policy
- Editing a retention policy
- Deleting a retention policy
- Associating a retention policy with a policy target
- Disassociating a retention policy from a policy target
- Enabling and disabling the storage expiry setting
- Viewing the storage expiry status table
- Managing Email Continuity Services
- About Email Continuity
- Email Continuity prerequisites
- Configuring Email Continuity
- Provisioning the Email Continuity service for your mail servers
- Adding the Email Continuity IP ranges to your firewall and mail server allowlists
- Updating your email security provider routing configuration
- Testing the Email Continuity configuration
- Managing Email Continuity
- Email Continuity FAQ
- Managing Reports and Notifications
- Classification
- Managing Data Import
- AD FS Configuration Guide
Assigning roles and privileges to Azure Active Directory groups
The Management Console supports synchronizing Azure Active Directory groups through SCIM or Active Directory Sync. This capability allows administrators to centrally manage access to Active Directory groups.
The feature enables administrators to assign roles and privileges to Active Directory groups directly from the Management Console. This reduces the need to manage reviewer roles on individual users-basis.
Before you use this feature, note the following facts:
By default, all synchronized Active Directory groups are assigned the role. At this stage, effective role and privileges of each member will be either their individual user role or other Active Directory groups the user belongs to.
When administrators assign the role at the Active Directory group level, all direct members of the Active Directory group automatically inherit the assigned reviewer privileges. A maximum of 100 members (user accounts) from a single Active Directory group can be assigned case-level reviewer privileges.
Only the direct group members can be assigned the role. The nested groups and their members cannot be assigned the Reviewer role.
See Assigning the reviewer role and privileges to Active Directory groups.
When administrators assign the role at the Active Directory group level, all direct members of the Active Directory group automatically inherit the assigned administrator privileges.
Only the direct group members can be assigned the role. The nested groups and their members cannot be assigned the Administrator role.
See Assigning the administrator roles and privileges to Active Directory groups.
The administrator can add, remove, and import monitored accounts while assigning roles and privileges to the Active Directory group.
The for monitored accounts will be highest date assigned from Individual user and all Active Directory groups.
Active Directory groups assigned with the Reviewer role can be selected as reviewers in Arctera eDiscovery. However, the Active Directory group role cannot be changed using Arctera eDiscovery.
Administrators can assign case-level reviewer privileges to an Active Directory group. All direct members of the Active Directory group automatically inherit the assigned reviewer privileges for the selected case. When an Active Directory group is added as a case reviewer, all its members are added as reviewers for the case.
If an Active Directory group is deleted during synchronization, members of that Active Directory group no longer retain the roles and privileges that were assigned to them through that Active Directory group. In this scenario, each member's effective role and privileges will be either their individual user role or other Active Directory groups the user belongs to.
If an Active Directory group with case-level reviewer privileges is removed, the expiry date for its members is set to the group removal date. The members still remain listed as case reviewers. However, when such members log in to Arctera eDiscovery with an expired reviewer role, the associated cases are not displayed to them.