Configuring support for Microsoft SharePoint Online and Microsoft OneDrive for Business

Microsoft SharePoint Online locations can be added as repositories in the Docs service just like an on-premise Microsoft SharePoint site to support both admin-defined and user-defined data sources. This is also true for Microsoft OneDrive for Business.

Microsoft SharePoint Online provides the following ways for users to authenticate and perform SharePoint operations:

  • Using on-premises Microsoft Active Directory
    • DirSync with Password Hash: Users and their passwords on Microsoft Active Directory are synchronized with Microsoft 365. Users are presented with a login page where they can enter their credentials to access Microsoft SharePoint Online.
    • Active Directory Federation Service (ADFS): ADFS serves as a Secure Token Service. Behind the scenes (in background), users are redirected to ADFS for authentication and are issued security tokens that are then used by Microsoft SharePoint Online to sign in. Microsoft SharePoint Online users do not need to enter credentials when accessing from the corporate network, which typically enables sign sign-on scenarios.
  • Using modern authentication: Enable modern authentication in the BEMS Dashboard.
These authentication mechanisms are supported by the Docs service and all preparations take place on the server side exclusively. No device changes are required to use the on-premises Active Directory. The following prerequisites are required for users to authenticate to Microsoft SharePoint Online:
  • For users to authenticate to Microsoft SharePoint Online using Microsoft Active Directory, Microsoft SharePoint Online is deployed in your environment based on DirSync with Password Hash or ADFS authentication mechanisms.
  • For users to authenticate to Microsoft SharePoint Online using modern authentication, Microsoft SharePoint Online is deployed in your environment and enabled for modern authentication in the BEMS Dashboard.