License Management
Muti-Tenant Management (MSP)
License Management
How to add and remove licenses for customer tenants in your MSP environment
Tenant License Management
Learn how to manage licenses for your customer tenants, including adding new licenses and removing existing ones through the customer settings interface.
Overview
License and module management is MSP-only: only MSP accounts can add or remove modules for the tenants they manage. Direct (non-MSP) accounts — whether on the free Community tier or a paid Enterprise plan — do not have any self-service license or module management. If a direct customer wants to change tier or add a module, they contact support; we update their account and add the modules they need.
For MSPs, license management controls which features and capabilities are available for each customer tenant, through the Module Access section on that tenant's management page. Adding certain modules may separately require an admin consent process to grant the Graph API permissions that module needs.
Managing Tenant Licenses
Accessing License Management
Navigate to Customer Settings
Go to Customer Settings in your MSP account
View your list of managed customer tenants
Access Tenant Actions
Find the customer tenant you want to manage
Click the Actions (pencil) icon in the tenant row
This opens the tenant's own management page
Adding a Module
Click "Add"
In the Module Access section of the tenant's management page, find the module you want to enable
Click Add next to it — only modules your own customer license actually permits are shown; a module that isn't offered means your account needs to be upgraded first (contact support)
Module Becomes Active
The module activates immediately for that tenant — no separate consent step for the activation itself
If the module requires additional Microsoft Graph permissions, those are requested the first time a feature that needs them is used, via the normal admin-consent flow
Removing a Module
In the Module Access section of the tenant's management page, you can also remove an active module.
Deactivate or Remove
Click the amber toggle icon next to an active module to deactivate it, or the trash icon to remove it permanently
Review the impact — the tenant immediately loses access to that module's features
Feature Impact
Removing a module cannot be undone from the same screen — access to features provided by that module stops immediately. Re-adding it later starts a fresh activation.
Consent Management Process
When Consent is Required
Consent is typically required when:
Adding a new license that requires additional permissions
Upgrading license tiers with expanded capabilities
Enabling new features that need extra Graph API access
First-time setup of advanced functionalities
Consent Workflow
Consent Request Triggered
System identifies required permissions for the new license
Consent dialog appears with permission details
Clear explanation of why permissions are needed
Admin Consent Required
Global Administrator or appropriate admin role needed
Review of requested permissions and their impact
Decision to grant or deny the consent request
Permission Activation
Once consent is granted, permissions are activated
License features become available immediately
User can access newly enabled capabilities
Consent Best Practice
Review the permissions requested during consent carefully. Only grant permissions that are necessary for the intended license features.
License Status Indicators
In the tenants list, license status is indicated with icons:
No Consent needed: - Indicates no license is assigned
Consent needed: - Indicates consent is required for the license
Consent license
If a license requires consent, you will see the red alert icon as show above. To provide consent go to the tenant using the action button and use the Grant Consent button.
Troubleshooting
Module Addition Fails
Possible causes:
Your MSP account's own customer license doesn't permit that module yet
You tried this from a Direct (non-MSP) account — module management is MSP-only
Solutions:
Contact support to verify or upgrade your license
Consent Process Fails
Possible causes:
Admin consent not properly granted
Permission conflicts with existing setup
Tenant policy restrictions, its not possible to grant the permissions
Solutions:
Ensure Global Administrator grants consent
Review existing permissions for conflicts
Check tenant conditional access policies
Features Not Available After Module Addition
Possible causes:
Consent not completed successfully
Permission synchronization delay
License activation pending
Solutions:
Complete the consent process if pending
Wait for permission synchronization (up to 30 minutes)
Contact support if issues persist
Related Documentation
License Flexibility
License management provides flexibility to scale features based on customer needs while maintaining security through proper permission management.
Last updated