Home > Configure Auto Discovery > Authentications in Auto Discovery and Backup
Export to PDFThe Auto Discovery in AOS and the backup services will now use the Cloud Backup for Microsoft 365 service apps (created through App management > Modern mode) first to scan and protect the objects in your tenants after June 2023 release. If you do not have service apps, we will use the default Microsoft 365 apps or custom Azure apps with the required permissions.
To protect Exchange Online mailboxes, SharePoint Online site collections, team sites and group sites with AvePoint Cloud Backup Express, you must configure a Cloud Backup Express service app for the Auto discovery and data protection.
If you have auto discovery scan profiles using the service account authentication or using app profile authentication to scan but with a service account as an additional method, the service account can still be used to protect the data that are unsupported in the app context (using app profile authentication). For the required permissions for the service account and account pool user, refer to Service Account Authentication. However, if you modify these scan profiles after June 2023 release, the service account authentication will be obsolete. Auto discovery scan jobs and the Cloud Backup jobs will look for the following apps for the operations:
Cloud Backup for Microsoft 365 service apps (For permissions authorized by default, refer to Manage App Profiles.)
Default Microsoft 365 app profile (For permissions authorized by default, refer to Microsoft 365 (App Permissions) section in AvePoint Online Services User Guide.)
Custom app profile (For permissions that you must manually add, refer to the table in App Profile Authentication.)