Skip to main content

Microsoft 365 Sign-ins

Microsoft Entra logs all sign-ins into an Azure tenant, which includes your internal apps and resources. [...] Reviewing sign-in errors and patterns provides valuable insight into how your users access applications and services.

To learn more about the service see the Microsoft Entra sign-in logs documentation.

Prerequisites

Setup

Permissions

Configuration steps

Registering an application for the connector

Required configuration

  • General settings
    • Name: MD.ECO - Connector - Microsoft 365 (Signins + Office)
    • Supported account types: accounts in this organizational directory only (default option)
  • A secret
  • API permissions required
    • See the following section

API permissions required

Microsoft Graph (4)
Permission NamePermission TypeDescription
AuditLog.Read.AllApplicationRead all audit log data
Policy.Read.ConditionalAccessApplicationRead applied Conditional Access policies
Reports.Read.AllApplicationRead all usage reports
User.Read.AllApplicationRead all users' full profiles
Office 365 Management APIs (2)
Permission NamePermission TypeDescription
ActivityFeed.ReadApplicationRead activity data for your organization
ActivityFeed.ReadDlpApplicationRead DLP policy events including detected sensitive data

Step by Step Steps

Create Azure application secret in MD.ECO

ORG Console - Secrets - Create