Accepting the Stormshield application
First, you must allow the Stormshield platform to interact with your Microsoft 365 environment for encryption management.
-
Retrieve your Azure Tenant ID:
-
Sign in to the Microsoft Entra ID portal.
-
In the Overview section, copy the value from the Tenant ID field.
-
-
Generate your consent URL to authorize the Stormshield application: replace <YOUR_TENANT_ID> with your tenant ID in the following URL:
https://login.microsoftonline.com/<YOUR_TENANT_ID>/adminconsent?client_id=8ec355aa-e580-4aa2-9430-f33ac946f87c
-
In your browser, paste the consent URL and press Enter.
-
Sign in with a Global Administrator or Compliance Administrator account.
-
Accept the Permissions requested for the Stormshield KMaaS for Microsoft 365 application.
-
Send your Microsoft 365 Tenant ID to your Stormshield contact to set up your dedicated service.
Stormshield will provide you with the DKE service URL (i.e., the endpoint for your secondary key). -
Create your Microsoft labels as described in Creating a sensitivity label. You will need the DKE service URL provided by Stormshield.