GDAP - granular delegated admin privileges

To provide a more secure relationship between LS Retail and customers we have now implemented GDAP model for new and current customers.

When creating a GDAP relationship the Relationship Name will be the Tenant name and we will create 2 roles. We will no longer request for the Dynamics 365 Admin Role.

This relationship is only between LS Retail and customers, not Partners / Indirect Resellers and customers. We therefor encourage all our partners to create a GDAP relationship with their customers as soon as possible (see Partner instructions).

In order to purchase a new LS Express, BC/LS Central SaaS, give access to create the LS Central SaaS environment, support our customers etc., we are requesting the below roles:

  • Dynamics 365 Business Central Administrator: The role is designed to grant access to manage Dynamics 365 Business Central for the customer without providing access to other Dynamics 365 or Power Platform products focusing only on Business Central.
    • We will request for an access for 180 days.
  • Service Support Administrator: With this access, we can read service health information, which is crucial to have if we have to report something to Microsoft, when monitoring licenses, upgrades and etc. We also need to we can create support tickets to Microsoft which are done per tenant and support tickets can be either something licensing or a request / questions regarding the license, they require us to create ticket per tenant, or of the request is needed from our support team to register tickets. Of course our partners should be handling this as well for their customers, this is just for the cases where it´s needed that LS Retail steps in.

    • We will request for an access for 730 days with auto renew opted in.

After the Business Central Admin role relationship has expired it will only be requested for again upon request from the customer for LS Retail to assist. It should be the basic responsibility of partners to support their customers.

Please note that the GDAP relationship can be removed by customers at any time, but without an active GDAP relationship, we will no longer be able to support / assist them with any SaaS issues related.

Customers can have more than one partners supporting them. Any partner that has a Microsoft Partner ID (MPN ID) and has already enrolled in the Cloud Solution Provider (CSP) program can send a GDAP request to the customer, it is up to the customer to accept or decline the request.