Connecting Microsoft 365 (CSP) to Uniportal

Created by Robby Singh, Modified on Tue, 5 May at 3:56 AM by Robby Singh

Overview

The Microsoft 365 (CSP) integration uses Granular Delegated Admin Privileges (GDAP) to let MSPs manage all of their customer tenants through a single connection in Uniportal. Once connected, you can selectively onboard the customers you want to manage, and Uniportal will deploy a service principal into each of those tenants so technicians can run actions like password resets, MFA changes, group access, and onboarding/offboarding workflows from the dashboard.

If you only need to connect a single Microsoft 365 tenant (for example, your own MSP tenant or a single internal IT environment), use the Microsoft 365 (Single Tenant) integration instead.

Prerequisites

Before starting, make sure the following are in place:

  • You have an Owner or Admin role in Uniportal to set up integrations.
  • The account you use to consent to the Uniportal app must:
    • Have Global Administrator rights in your Partner tenant during setup.
    • Be a member of the AdminAgents security group.
    • Have MFA enabled.
  • You have active GDAP relationships with the customer tenants you want to manage in Microsoft Partner Center, with the privileged roles required for Uniportal actions.

Step-by-step guide

1. Open the Integrations page

  1. Log in to your Uniportal dashboard.
  2. In the sidebar, click Integrations.
  3. Under Available, find Microsoft 365 (CSP) and click Connect Now.

2. Authorize the integration

  1. Click Continue to start the consent flow.
  2. Sign in with the service account that meets the prerequisites above (Global Admin, AdminAgents member, Microsoft MFA).
  3. You will be prompted to consent twice:
    • First consent: grants Uniportal access to the Microsoft Graph API.
    • Second consent: grants access to the Partner Center API.
  4. Approve both prompts to complete authorization.

Once consent is granted, you will be returned to Uniportal and the integration will appear under Connected on the Integrations page.

3. Import and select your customers

After the integration is authorized, Uniportal pulls the list of customer tenants you have GDAP relationships with. You then choose which customers you want to manage in Uniportal. This is important: Uniportal will only deploy a service principal into the tenants you select, so you stay in control of which customers are part of your Uniportal environment.

  1. Open the Microsoft 365 (CSP) integration from the Integrations page.
  2. Click Import Tenants.
  3. Select the customers you want to onboard and confirm.
  4. Uniportal will provision the service principal into each selected tenant and begin the initial sync.

You can monitor onboarding from the integration detail page. Each tenant will show an Onboarding Status of Onboarded once provisioning is complete, along with the last sync time. You can trigger a manual sync any time using Sync Now.

4. Review imported data and set permissions

Once the integration is set up, all selected customers and their end users are imported into the dashboard automatically. Before letting your team start running actions, set the right access controls:

  1. Go to Team in the sidebar.
  2. Assign technicians to the appropriate roles and groups.
  3. Use Companies to scope which customer tenants each technician group can access.

This makes sure technicians only see and act on the customers they are responsible for, which is especially important if your team is segmented by region, pod, or customer tier.

Verifying the integration

To confirm everything is working:

  • The Microsoft 365 (CSP) card on the Integrations page shows a green Connected status with the tenant, enabled date, and connected account.
  • Selected customers appear under the integration with Onboarded status and a recent Last Synced timestamp.
  • Customer end users are visible in the End Users section of the dashboard.

Troubleshooting

The consent flow fails or loops back to login. Confirm the account you are using has Global Administrator rights and is a member of AdminAgents and has MFA enabled.

A customer is missing from the import list. The customer must have an active GDAP relationship in Partner Center with the AdminAgents group included. Re-check the relationship in Microsoft Partner Center and try Import Tenants again.


A tenant is stuck in onboarding. Use Sync Now on the tenant row to retry. If it continues to fail, disconnect and reconnect the integration, or reach out to Uniportal support.

Technicians can see customers they should not. Review the role and group assignments under Team and adjust scoping under Companies.


Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article