Forum Discussion
Best practice for creating groups to be used in CAS
Thank you for the response, Sebastien. I see the issue now - our Azure GA (also a Security Administrator) does not have the choice of "Manage Admin Access" in the gear drop-down. Only Settings, Governance log, Security extensions, Exported reports, Scoped deployment, IP address ranges and User groups.
I had our GA assign himself an A5 license just in case (rest of campus is currently A1), but that didn't change the drop-down choices. Might you have an idea how to proceed on this?
Matt
Hi,
Why are you combining Global Admin with Security Admin ?
Could you remove that account from the Security Admin, log off and try again ?
I suspect a permission mismatch.
- mrognlieMar 05, 2019Copper Contributor
Sebastien:
After quite a bit more work, we have determined that delegating permissions to imported groups is not a feature of Office Cloud App Security, and only a feature of Microsoft Cloud App Security. It's not specifically called out here https://docs.microsoft.com/en-us/cloud-app-security/editions-cloud-app-security-o365, but we assume based on other feature items that we will not have this available in OCAS.
Thanks,
Matt