ASD's Blueprint for Secure Cloud

System Administration

System Administration is the process of managing, troubleshooting, and maintaining the solution. To complete this, system administrators are granted permissions over the solution. The allocation of permissions to administrators should align with the administrator's role within the organisation and the principle of least privileged access. The allocation of permission to the administrator's role is captured within the RBAC policy.

Estimated reading time: 2 minutes

Administrative portals

To manage and configure the solution, administrators will require access to various administrative portals. These portals are a mixture of server based and web-based portals that exist internally or in the cloud.

Web based administrative portals are provided by Microsoft; however, the URLs for these portals are subject to change. For an up to date complete list of portals required to administer Microsoft see Microsoft security portals and admin centers.

Administrative and security portals required for the Blueprint are listed below.

PortalPurposeURL
Microsoft Entra admin centreAccess and administer Microsoft Entrahttps://entra.microsoft.com
Microsoft 365 admin centreConfiguration for Microsoft 365 services, including role and licence management, and Microsoft 365 service updateshttps://admin.microsoft.com
Microsoft Purview compliance portalAccess eDiscovery and management of data handling policieshttps://compliance.microsoft.com
Microsoft Defender portalMonitor and respond to threat activity, and apply protection and response configuration across the environmenthttps://security.microsoft.com
Microsoft Intune admin centreManage and secure organisational deviceshttps://endpoint.microsoft.com
Microsoft 365 Apps admin centreCreate, modify and export Office applications deployment configurationshttps://config.office.com
Exchange admin centreExchange Online management centre to manage organisation email settingshttps://admin.exchange.microsoft.com
Teams Admin centreManage and monitor the organisation Teams environment including features, licences, policies, and issueshttps://admin.teams.microsoft.com
Power Platform Admin centreThe unified portal to administer Power Apps, Power Automate, Power Pages, and Power Virtual Agentshttps://admin.powerplatform.microsoft.com
SharePoint Admin centreInform, configure, and govern management of all aspects of SharePoint Online across the tenanthttps://admin.microsoft.com/sharepoint
Defender for Cloud Apps portalConfigure and manage threat detection, session controls, data protections, and Shadow IT detectionhttps://portal.cloudappsecurity.com
Azure PortalView and manage all aspects of an organisation’s Azure environmenthttps://portal.azure.com
Network Connectivity Test ToolEnables measurement of the connectivity between a device and Microsoft’s network for troubleshooting and tuninghttps://connectivity.office.com/
Microsoft Teams Call Quality DashboardShows organisation wide information for call and meeting quality with relation to Microsoft Teamshttps://cqd.teams.microsoft.com
  • None identified

References

  • None identified

Configuration

  • None identified

Procedures

  • None identified

Do you have a suggestion on how the above page could be improved? Get in touch! ASD's Blueprint for Secure Cloud is an open source project, and we would love to get your input. Submit an issue on our GitHub, or send us an email at blueprint@asd.gov.au

Acknowledgement of Country icon

Acknowledgement of Country
We acknowledge the Traditional Owners and Custodians of Country throughout Australia and their continuing connections to land, sea and communities. We pay our respects to them, their cultures and their Elders; past, present and emerging. We also recognise Australia's First Peoples' enduring contribution to Australia's national security.

Authorised by the Australian Government, Canberra