Chat now with support
Chat with Support

Welcome, erwin customers to Quest Support Portal click here for for frequently asked questions regarding servicing your supported assets.

Metalogix Content Matrix 9.2 - eRoom Edition User Guide

Introduction Entering the License Key Content Matrix Console End User Interface Connecting to eRoom Connecting to SharePoint Preparing for Your Migration Initiating a Migration Configuring Copying Options Saving or Running a Migration Action Mapping Links and Running Link Correction Incremental Migration Log Files Using PowerShell with Content Matrix
Configuring PowerShell for Use with Content Matrix
Registering the Metalogix Command DLL Files Adding the PowerShell Snap-Ins for the Application Framework Content Matrix PowerShell Commandlet List
Metalogix.System.Commands Metalogix.SharePoint.Commands Metalogix.Jobs.Reporting.Commands Metalogix.ERoom.Commands
Using Powershell for Nested Content Reports and Pre-Migration Check
Modifying Content Matrix Configuration and Settings Frequently Asked Questions About Us

Connecting with Certificates

Metalogix Content Matrix  can use client certificates to authenticate connections to eRoom servers secured with X.509 Certificates. This type of authentication can be used for RSA authentication implementations that support X.509 Certificates.

When connecting to SharePoint, there are two options that can be used to add certificates to the list of included certificates: Add Installed Certificate and Add Certificate From File.

SharePoint connections do not actually save the certificate information directly, but instead they save the data on how to locate the certificates that are in use. This means that if the certificates are deleted or moved from the referenced location, they will no longer be used with the SharePoint connection and will have to be manually re-added.

SharePoint Certificates are also supported in PowerShell. When working with PowerShell it is still recommended that the initial SharePoint connection is first configured in the Metalogix Content Matrix Console. The recommended process when working with certificates and PowerShell is to first add the connection (with certificates) in Metalogix Content Matrix, then set up a migration action in the UI and generate a PowerShell script. This will allow you to get the connection format that is required to create a connection in PowerShell, and it can then be written out manually (if desired).

It should also be noted that the Web Browser Authentication type does not automatically detect certificates. In order for certificates to be included with this method, they must first be installed in the appropriate locations in order for a web browser itself to access them.

NOTE:   In some cases, including certificates can potentially result in receiving "maximum request length" messages when migrating smaller files because the certificate information is included when the data is being migrated.  

To Add Installed Certificates:

Only "Personal" certificates can be added in this manner because it is the only store that web browsers use to find certificates when accessing a website.

1.In the SharePoint Logon dialog, select the Include Certificates tab.

Include Certificates Tab

2.Click [Add Installed Certificate].

The Add Installed Certificates dialog displays all of the certificates that are installed in the logged in user account's "Personal" certificate store.

3.Select any certificates that should be included, and click [OK].

When you return to the SharePoint Logon dialog the selected certificates be displayed in the Included Certificates list, and they will be included whenever Metalogix Content Matrix is running an action to or from the SharePoint connection.

To Add a Certificate from a file:

1.In the SharePoint Logon dialog, select the Include Certificates tab.

2.Click [Add Certificate From File].

3.Either:

§enter a filename and location into the Certificate File text box

OR

§select the Browse button to open a file explorer dialog and navigate to, and select, the desired certificate.

4.If a password is required to use with the certificate, enter it in the Password (optional) text box.

NOTE: When a connection to SharePoint is made, Metalogix Content Matrix will save the password field for any certificates so it can re-establish a connection to that SharePoint instance at a later date. If you are not comfortable with entering the password in the Password (optional) field, you can move the certificate into the user account's "Personal" folder, and use the Add Installed Certificate option instead, provided the user account/password is the same.

When you return to the SharePoint Logon dialog, the selected certificate will display in the Included Certificates list, and it will be included whenever Metalogix Content Matrix is running an action to or from the SharePoint connection.

Removing Certificates

Any certificates that have previously been added through the two Add Certificates options can also be removed from the list of Included Certificates.

To remove a certificate:

1.In the SharePoint Logon dialog, select the Include Certificates tab.

2.Select the certificate(s) that you want to remove.

3.Click [Remove].

Using Office 365 OAuth Authentication to Connect to SharePoint Online

Office 365 OAuth Authentication is a token-based authentication method that can be used as an alternative to Standard/ADFS Authentication to reduce throttling.

If Multi-Factor Authentication is set up for the tenant and enabled for the account (as described in the Microsoft TechNet article SharePoint Online - O365: Set up Multi-Factor Authentication), you can connect using Office 365 OAuth with MFA Authentication as an alternative to Office 365 Web Browser authentication.  

Registering the Metalogix Content Matrix SharePoint Client Application for OAuth Authentication

The very first time OAuth Authentication is selected, the application Metalogix Content Matrix SharePoint Client must be registered for the tenant.

IMPORTANT:  Prior to version 9.2, the Metalogix SharePoint Migration Client application was used for OAuth Authentication. Jobs created before version 9.2 (including those that use PowerShell) will continue to use this application (as long as it is still registered in Azure Active Directory).  Starting with version 9.2, all jobs using OAuth Authentication will use the Metalogix Content Matrix SharePoint Client application.

Required Permissions

At a minimum, the following permissions are required to register and provide consent for the Metalogix Content Matrix SharePoint Client application.

·For a site-level connection, the account must have a minimum of Site Administrator and Application Administrator permission roles.

·For a tenant-level connection, the account must have a minimum of SharePoint Administrator and Application Administrator permission roles.

Providing Consent to Grant the Application Requested Permissions

The first time a Content Matrix user attempts to connect to SharePoint Online using Office 365 OAuth Authentication, a dialog displays requesting that you grant the permissions that the application needs to perform migrations.

A Global Administrator can check the Consent on behalf of your organization box, which will prevent this dialog from displaying for other users.  If the account is not a Global Administrator, the Consent on behalf of your organization option will be hidden.

IMPORTANT:  If a Global Administrator does not consent on behalf of the organization,  each Content Matrix user who attempts to connect using Office 365 OAuth Authentication for the first time must sign in with an account that has the Application Administrator permission role.

OAuth Accept

After [Accept] is clicked, the connection is created (and the application will be registered if it does not already exist in Azure Active Directory).  In addition, the token cache file ConnectionsTokenCache.dat is created in the AppData/Roaming/Metalogix folder.  (Note, if you have used OAuth Authentication in an earlier version of Content Matrix, this file will already exist.)

Related Documents

The document was helpful.

Select Rating

I easily found the information I needed.

Select Rating