{"id":58113,"date":"2019-12-06T14:16:59","date_gmt":"2019-12-06T22:16:59","guid":{"rendered":"https:\/\/devblogs.microsoft.com\/devops\/?p=58113"},"modified":"2019-12-06T14:16:59","modified_gmt":"2019-12-06T22:16:59","slug":"policy-support-to-restrict-creating-new-azure-devops-organizations","status":"publish","type":"post","link":"https:\/\/devblogs.microsoft.com\/devops\/policy-support-to-restrict-creating-new-azure-devops-organizations\/","title":{"rendered":"Policy support to restrict creating new Azure DevOps organizations"},"content":{"rendered":"<p>We make it easy for users to create new organizations and start collaborating within seconds in <a href=\"http:\/\/azure.com\/devops\" rel=\"noopener noreferrer\" target=\"_blank\">Azure DevOps<\/a>. While our users loved this, some of our big enterprise customers have long been demanding that they need to control who can create new organizations within their company as a way to protect their IP. With the latest sprint deployment, I am happy to announce that we rolled out a new policy in <a href=\"http:\/\/azure.com\/devops\" rel=\"noopener noreferrer\" target=\"_blank\">Azure DevOps<\/a> to restrict this to a configured list of people in your company. This policy is supported only for company owned (Azure Active Directory) organizations. Users creating organization using their personal account (MSA or GitHub) have no restrictions.<\/p>\n<p>To administer this policy, users need to be assigned to a new role called <strong>\u2018Azure DevOps Administrator\u2019<\/strong> in Azure AD. Talk to the Azure AD administrator of your company to get this role assigned to you. Please refer to the documentation about this new role <a href=\"https:\/\/docs.microsoft.com\/en-us\/azure\/active-directory\/users-groups-roles\/directory-assign-admin-roles\" rel=\"noopener noreferrer\" target=\"_blank\">here<\/a>.<\/p>\n<p>You can find this role in the Azure Portal under Azure Active Directory > Roles and administrators.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/devblogs.microsoft.com\/devops\/wp-content\/uploads\/sites\/6\/2019\/11\/Roles-1-300x165.png\" alt=\"\" width=\"600\" height=\"330\" class=\"alignnone size-medium wp-image-58133\" srcset=\"https:\/\/devblogs.microsoft.com\/devops\/wp-content\/uploads\/sites\/6\/2019\/11\/Roles-1-300x165.png 300w, https:\/\/devblogs.microsoft.com\/devops\/wp-content\/uploads\/sites\/6\/2019\/11\/Roles-1-768x422.png 768w, https:\/\/devblogs.microsoft.com\/devops\/wp-content\/uploads\/sites\/6\/2019\/11\/Roles-1-1024x563.png 1024w\" sizes=\"(max-width: 600px) 100vw, 600px\" \/><\/p>\n<p>Once you are assigned to this role, sign into any <a href=\"http:\/\/azure.com\/devops\" rel=\"noopener noreferrer\" target=\"_blank\">Azure DevOps<\/a> organization that is connected to your Azure AD tenant to start managing this policy. You can find this new policy under organization settings > Azure Active Directory.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/devblogs.microsoft.com\/devops\/wp-content\/uploads\/sites\/6\/2019\/11\/tenantpolicy-300x239.png\" alt=\"\" width=\"600\" height=\"478\" class=\"alignnone size-medium wp-image-58130\" srcset=\"https:\/\/devblogs.microsoft.com\/devops\/wp-content\/uploads\/sites\/6\/2019\/11\/tenantpolicy-300x239.png 300w, https:\/\/devblogs.microsoft.com\/devops\/wp-content\/uploads\/sites\/6\/2019\/11\/tenantpolicy-768x611.png 768w, https:\/\/devblogs.microsoft.com\/devops\/wp-content\/uploads\/sites\/6\/2019\/11\/tenantpolicy-1024x815.png 1024w\" sizes=\"(max-width: 600px) 100vw, 600px\" \/><\/p>\n<p>You can find the documentation to configure this policy <a href=\"https:\/\/docs.microsoft.com\/en-us\/azure\/devops\/organizations\/accounts\/azure-ad-tenant-policy-restrict-org-creation?view=azure-devops\" rel=\"noopener noreferrer\" target=\"_blank\">here<\/a>.<\/p>\n<p>Please try out this feature and let us know your feedback through via Twitter on <a href=\"https:\/\/twitter.com\/AzureDevOps\" rel=\"noopener noreferrer\" target=\"_blank\">@AzureDevOps<\/a>, or using <a href=\"https:\/\/developercommunity.visualstudio.com\/spaces\/21\/index.html\" rel=\"noopener noreferrer\" target=\"_blank\">Developer Community<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We are rolling out a new tenant policy in Azure DevOps to configure who are allowed to create new Azure DevOps organizations in  your company.<\/p>\n","protected":false},"author":229,"featured_media":58130,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[228,224],"tags":[],"class_list":["post-58113","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-admin-licensing","category-azure"],"acf":[],"blog_post_summary":"<p>We are rolling out a new tenant policy in Azure DevOps to configure who are allowed to create new Azure DevOps organizations in  your company.<\/p>\n","_links":{"self":[{"href":"https:\/\/devblogs.microsoft.com\/devops\/wp-json\/wp\/v2\/posts\/58113","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/devblogs.microsoft.com\/devops\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/devblogs.microsoft.com\/devops\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/devops\/wp-json\/wp\/v2\/users\/229"}],"replies":[{"embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/devops\/wp-json\/wp\/v2\/comments?post=58113"}],"version-history":[{"count":0,"href":"https:\/\/devblogs.microsoft.com\/devops\/wp-json\/wp\/v2\/posts\/58113\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/devops\/wp-json\/wp\/v2\/media\/58130"}],"wp:attachment":[{"href":"https:\/\/devblogs.microsoft.com\/devops\/wp-json\/wp\/v2\/media?parent=58113"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/devops\/wp-json\/wp\/v2\/categories?post=58113"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/devops\/wp-json\/wp\/v2\/tags?post=58113"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}