Tapestry Connect - Enterprise Edition
An overview of the Enterprise edition of the Tapestry Connect connector.
What Is Tapestry Connect - Enterprise Edition?
Tapestry Connect - Enterprise Edition gives IT teams and administrators fine grained control over the permissions and scope of what Tapestry Connect has access to within their Azure tenant.
What is the Difference from the non Enterprise Edition?
The non Enterprise Edition of Tapestry Connect connects on a user-by-user basis, using Delegated Permissions scoping what is available to the currently signed-in user. An IT administrator is currently required to approve the consent request upon the first time a Cascade user attempts to set up Tapestry Connect.
The Enterprise Edition makes use of a dedicated Enterprise Application configured and maintained by your IT team, using Application Permissions. This allows for complete control over who is included in the access scope (through the use of User Groups), control of scopes (as long as the base required scopes are included), and the ability to monitor activity such as who is connecting and full audit and log history.
How Do We Set Up Tapestry Connect - Enterprise Edition?
Tapestry Connect - Enterprise Edition makes use of an Enterprise Application within your Azure Tenant and uses a set of client credentials to allow Cascade and Tapestry to access user files, these are the steps to get started
1. Have your Azure Tenant Administrator set up a new Enterprise Application called Cascade - Tapestry Connect
a. In your Azure Tenant Portal navigate to Microsoft Entra ID
b. Choose Enterprise Application from the Manage menu

c. Create a New Application and choose Create your own application
d. Choose to Integrate any other application you don’t find in the gallery (Non-gallery)

2. After the application is created, locate it in your App registrations

3. Navigate to API permissions and add the following Microsoft Graph API Permissions using Application Permissions
-
- Chat.Read.All
- Files.Read.All
- OnlineMeetings.Read.All
- OnlineMeetingTranscripts.Read.All
- User.Read.All

4. Navigate to Certificates & Secrets and add a new Client Secret
a. Add Tapestry Connect Enterprise as the description
b. Set your expiry based as needed, noting that you’ll need to reauthenticate in Cascade any time this secret is rotated

c. Make sure you store the Secret Value (not the Secret ID) securely as once you leave this page you won’t be able to get it again.
d. This value is used alongside the Application (client) ID that you can get from the Overview page as the client credentials for setting Tapestry from the Cascade UI

5. A user group can be created specifically or you can use an existing group (for example from your SSO configuration) to attach to the Enterprise Application

- Choose Add user/group
- Choose the Active Directory group and that concludes the Azure Tenant setup for Tapestry Connect Enterprise+