home

Mobile Endpoint Security

Lookout Product Documentation

Find answers about using and optimizing Lookout products.

Setting up AAD User Groups for Permission Levels

This is a one-time operation. Once you have created an AAD User Group for each permission level, you can re-use that group across all of your tenants.

  1. Log in to the Azure Active Directory admin center as an AAD Global Administrator.
  2. Create a Lookout Full Access Admins User Group and copy the Group Object ID.
  3. Add users who should have Full Access Admin permissions to the new User Group, regardless of which tenant they use.
  4. If you are using Restricted Access, Read-Only, or Invite Only permission levels, repeat the steps above to create Lookout Restricted Access Admins, Lookout Read Only Admins, and Lookout Invite Only Admins User Groups.
    Copy the Group Object IDs.