Forum Discussion

Mohsinrashid1's avatar
Mohsinrashid1
Copper Contributor
Jun 21, 2019
Solved

Unable to create Azure atp instance

your instance was not created because security group with same name already exist in azure active directory.

  • Hi Mohsinrashid1

     

    It looks like your tenant had an AATP instance in the past and it was deleted. However when the instance was deleted the AAD groups used by AATP for RBAC were not deleted. 

     

    If you go to AAD you should see three groups. 

    Azure ATP (instance name) Administrators

    Azure ATP (instance name) Viewers

    Azure ATP (instance name) Users

    https://docs.microsoft.com/en-us/azure-advanced-threat-protection/atp-role-groups#types-of-azure-atp-security-groups

     

    You can see who is currently a member of these groups and then delete these groups. 

    You should be able to create your AATP instance now. 

     

    HTH 

    Gershon 

     

     

1 Reply

  • Hi Mohsinrashid1

     

    It looks like your tenant had an AATP instance in the past and it was deleted. However when the instance was deleted the AAD groups used by AATP for RBAC were not deleted. 

     

    If you go to AAD you should see three groups. 

    Azure ATP (instance name) Administrators

    Azure ATP (instance name) Viewers

    Azure ATP (instance name) Users

    https://docs.microsoft.com/en-us/azure-advanced-threat-protection/atp-role-groups#types-of-azure-atp-security-groups

     

    You can see who is currently a member of these groups and then delete these groups. 

    You should be able to create your AATP instance now. 

     

    HTH 

    Gershon 

     

     

Resources