May 29 2019 08:50 PM
How can I create more instances in azure atp ?. Before there were working groups where you could have many. My scenario is that a holding company has different independent domains (companies) in the same tenant and each one has its domain administrator, so a centralized instance for eight domains does not work because each domain has its own administrator.
May 30 2019 04:52 AM
We dont support this model anymore. You can only have 1 central work space per tenant.
Sep 21 2020 08:28 AM
Hi,
is this still valid? Still only one Azure ATP instance can be created per tenant? Is any change foreseen in MS road-map that more Azure ATP instances can be created in one tenant?
Thanks,
Sep 21 2020 11:55 AM
@gencv Still one instance per tenant. as far as I know there are no plans to change that, as this is the model all the azure security products are using across the board, and breaking this model causes a lot of issues.
We used to have that model initially and had to back out of it because it failed to align with the rest of the products, and broke integrations...
Sep 21 2020 12:12 PM
Hi @Eli Ofek ,
thanks for the feedback. Do you know if it's possible to configure role based access control, per group of domain controllers in Azure ATP?
Thanks,
Sep 21 2020 12:27 PM
@gencv_al , No, there isn't.
But I suggest to send this feedback to AATAatpFeedback at microsoft.com.
Mention the scenario you are trying to deal with.
What is your current solution for any other azure security product you are using if any ?
Oct 07 2020 03:28 AM
Oct 08 2020 04:22 PM
@gencv then you will need to use a different AD tenant for each domain .
Question: are those domains connected in any way? if yes, and you split them to different workspaces, while you gain some kind of "role separation" you are hurting detection a lot as you won't be able to get full coverage on cross domain attacks.