Edit

Overview of tenant management APIs in Microsoft Graph

Tenants are the foundation of your organization's cloud environment, providing the boundaries for collaboration, identity, access, and resource management. Microsoft Graph provides a growing set of APIs to programmatically manage, configure, and govern those tenants at scale - from maintaining consistent settings to establishing cross-tenant governance relationships.

Available services and APIs


Backup and restore

The backup and restore APIs provide a programmatic surface for building business continuity into applications and managed service offerings.

Currently, only the Microsoft 365 Backup Storage APIs are generally available. These APIs protect SharePoint sites, OneDrive accounts, and Exchange mailboxes with up to one year of retention and recovery points every ten minutes. Backups use append-only, immutable storage that prevents ransomware and compromised accounts from corrupting historical data. Restores are free, and data never leaves the Microsoft 365 trust boundary.


Configuration management

Define a baseline of your tenant configuration settings and monitor them over time. Detect and resolve configuration drift across workloads such as Conditional Access policies, security defaults, and identity providers.


Cross-tenant access

Define and control the external organizations that your users can collaborate with for seamless and secure collaboration. Configure cross-tenant access policies to specify:

  • Which organizations and in what Microsoft Azure clouds can your users collaborate with?
  • Is the collaboration limited to specific users in the organizations?
  • What authentication controls are applied to users from the organizations?

Multitenant organizations

Define and manage an organization that spans multiple Microsoft Entra tenants. Add or remove member tenants, configure roles, and set up cross-tenant access and synchronization templates so all tenants collaborate as a single entity.