Partner Center Security
33 Topics- Registration Microsoft Partner ProblemHello Community, I would like to register as a Microsoft partner with my Microsoft business ID. (Microsoft AI Cloud Partner Program) Unfortunately, I get the following error message: {"code":2100,"description":"A legal entity matching the request payload already exists when creating the legal entity.","data":[],"source":"PartnerAccountEnrollmentApi"} Does anyone have an idea? Thanks and regards Torsten
- GDAP renewal time is approachingHi all, The relationships we created two years ago are due for renewal soon, and I'm curious how other people are approaching the creation of new relationships. With the introduction of relationships that auto renew, have you found this to be a beneficial alternative? We are a Managed Service Provider and our customers want us to turn ALL the knobs in the Microsoft portals for them. I want to have the flexibility of techs only enabling the roles they need, but there are a LOT of roles. Creating a relationship with 34 roles is a bit extreme. Plus, it looks like we need 43 built-in roles to have the same level as access as Global Admin, and some of those roles are not available via GDAP today. The role that stands out the most is "Organizational Branding Administrator." Can another role that is available through GDAP change sign-in branding? What would partners think if Microsoft allowed the Global Admin role to auto-renew until Microsoft adds all the built in roles to GDAP roles needed to replace Global Admin? Maybe put some sort of extra warning on the role acceptance side advising the client this is not recommended and let the client make that informed choice themselves? What do you think customers opinion of this move would be? From my conversations with different people, I am under the impression that customers didn't want Microsoft to allow partners the option of letting the Global Admin role auto-renew. I am curious what the customers were looking to address with this approach and if there is another way. I look forward to reading your thoughts and experiences!
- Question about the new Partner Benefits optionsWe are a small ISV that has been in the Partner program (Now CSP) almost since it's beginning. For most of the time we have been in the program we have maintained our eligibility by having our software certified. But then Microsoft changed the requirements to be mostly revenue based and we were no longer able to maintain our Gold level (or silver level). We were still able to purchase the benefits that we use as a legacy Gold partner. But now it appears that Microsoft is getting rid of this next year. So I'm wondering what our best option or options are going forward. I've seen several emails about a new certification process as well as some new options for benefits. Based on our renewal date it appears that we will have to transition to the new benefits options. With the legacy Gold partner benefits, we currently have a monthly Azure benefit of $100 plus I believe some kind of reduced licensing cost for our Azure VMs related to our MSDN subscription which comes from the legacy Gold partner benefits. I found information about the new offerings here https://partner.microsoft.com/en-US/partnership/compare-programs I've reviewed the different offerings and it looks like the Partner Success Core Benefits and either the ISV Success Core Package or the ISV Success Expanded Package would be appropriate So that leads to my two questions: First, do we have to select and purchase both a benefits package and a software offering? Second, with our current legacy Gold partner benefits we'd annually renew our Azure benefits from the MPN site and that would flow directly to our Azure subscription. Will this stay the same with the new benefits? Thanks Nick
- I can't see my customer in the reports in partner earned creditI have a client who has an Azure Subscription (Azure Plan) and my Guest user has an Admin RBAC on the subscription scope, but I can't see my customer in the reports on partner earned credit. For that reason, I am not able to reach the partner designation because my partner punctuation in the designation does not appear. My user is a guest in the customer tenant and has already linked my partner ID in the Management Partner Blade. I need help. Thanks in advance for your time.
- DNS server issue on windows server 2012R2Hallo, I have problem with DNS server, the DNS server cannot resolv external domain, but if I test ping public IP no problem. I use forwarder and I also test forwarder, there is no problem with forwarder, I check firewall there is not problem with firewall even I have disable firewall. Any sombody help me?
- About Preconsented applicationsHello, I am trying to more effectively administrate our customers via Microsoft Graph API, and are trying to follow this guide: https://learn.microsoft.com/en-us/graph/auth-cloudsolutionprovider This is where I don't get things working: Additionally, as a partner developer, you can build a partner-managed app to manage your customers' Microsoft services. Partner-managed apps are often called preconsented apps because all your customers are automatically preconsented for your partner-managed apps. This means when a user from one of your customer tenants uses one of your partner-managed apps, the user can use it without being prompted to give consent. Partner-managed apps also inherit Delegated Admin Privileges, so your partner agents can also get privileged access to your customers through your partner-managed application. I have attempted to use Microsoft Graph via Powershell, HTTP, both delegated and user-methods, nothing seems to be working. If trying Connect-Mggraph -ClientId "***partnermultitenantappid***" -TenantId "****customertenantid****", I get this error: AADSTS90099: The application '****' (*****) has not been authorized in the tenant '*****'. Applications must be authorized to access the customer tenant before partner delegated administrators can use them. This gets solved if I log in to the tenant directly and add the application as per normal. But that eliminates the whole point about something being pre-consented. I have followed all the steps and I have added the application as a serviceprincipal for the AdminAgents group, which I have confirmed is also assigned to the PartnerRelationship with all permissions. The Partner relationship has all rights minus Global Administrator as part of the steps of troubleshooting the issues ive encountered thus far. What am I missing? Again reading from the article: Partner-managed apps also inherit Delegated Admin Privileges, so your partner agents can also get privileged access to your customers through your partner-managed application. Final question: Is it only possible to authenticate to customer tenants with delegated authentication, or is it possible with even application authentication as well?
- Do More with Microsoft 365 E3 promoThe link for this promo downloads a locked PDF that no one seems to be able to open. How do we access the details of this promo? Please advise Partner blog post: https://www.microsoft.com/en-us/americas-partner-blog/2024/12/16/microsoft-365-copilot-enables-new-opportunities-for-partners/ Link to PDF: https://aka.ms/DMWL_ME3_Promo_ExecSum Promo offer Do More with Microsoft 365 E3 promo Security remains a top priority for customers. The introduction of AI amplifies this concern, underscoring the importance of safeguarding data. Now through June 30, 2025, CSP partners will receive a 15 percent discount off the net partner price for new-to-Microsoft 365 E3 customers. Microsoft 365 E3 provides essential foundations to enable AI, including Microsoft 365 apps and security capabilities that simplify IT management and support customers on their Zero Trust journey. For customers seeking next-level threat protection and data security, Microsoft 365 E5 provides additional capabilities such as XDR to defend across the infrastructure and ensure data security throughout the data lifecycle.