Configuring Restore Portal Settings
On the Restore Portal tab, do the following:
- Select the Enable Restore Portal check box.
- From the Region drop-down list, select a Microsoft Entra region.
Keep in mind that if you change your Microsoft Entra region, you must also specify another Microsoft Entra application.
- In the Application ID field, specify an identification number of Microsoft Entra application that you want to use to access Restore Portal.
You can find this identification number in the application settings of your Microsoft Entra ID. For more information, see this Microsoft article. Make sure to manually grant the required permissions to your Microsoft Entra application.
- In the Restore Portal URL field, specify web address of a machine with the Veeam Backup for Microsoft 365 REST API component installed. Restore operators and end users will use this web address to open Restore Portal in a web browser window.
Consider the following:
- The website is available over HTTPS protocol only.
- By default, port 4443 must be opened on the Veeam Backup for Microsoft 365 server or a machine with the Veeam Backup for Microsoft 365 REST API component installed. For more information, see Ports.
- The web address must be specified in one of the following formats:
- https://<IPv4 address>:<port number>, where <IPv4 address> is a public IPv4 address of a machine with the Veeam Backup for Microsoft 365 REST API component installed. For example, https://135.169.170.192:4443.
- https://<DNS hostname>:<port number>, where <DNS hostname> is DNS host name of a machine with the Veeam Backup for Microsoft 365 REST API component installed. For example, https://portal.abc.com:4443.
- In the Application certificate section, click Install to specify a TLS certificate that you want to use for data exchange between Restore Portal and the specified Microsoft Entra application.
You can generate a new self-signed certificate or use an existing one. When generating a new self-signed certificate, Veeam Backup for Microsoft 365 will register it in Microsoft Entra ID automatically. Before using an existing certificate, make sure to register this certificate in Microsoft Entra ID. For more information, see this Microsoft article.
- In the Select Certificate wizard, proceed to any of the following options:
Generate a new self-signed certificate
Perform the following steps:
|
Import an existing TLS certificate from the certificate store
Perform the following steps:
|
Import a TLS certificate from a file in the PFX format
Perform the following steps:
|
Note |
If you generated a new self-signed certificate for the specified Microsoft Entra application, you must add this certificate in the application settings of your Microsoft Entra ID. |






