# Requirements

For the full range of functions, an activation by Provectus Software GmbH is required.

The app only works in demo-mode, without a valid license provided.

To use the Secure Contacts app Microsoft Azure tennant must be present and activated with following functions:

* Azure Active Directory Premium P1 (or higher)
* Exchange Online P1 (or higher)
* Microsoft Intune (M365 E3 or M365 E5)
* Dataverse

In order to use the Microsoft Teams integration, the Microsoft Teams function must be activated.

### Testgroup <a href="#testgroup" id="testgroup"></a>

In Azure Active Directory a Security Group is required and all test-users must be member of this group for this guide.

### Requirements for all Implementations of SCA in this guide: <a href="#requirements-for-implementation-of-sca-in-this-guide" id="requirements-for-implementation-of-sca-in-this-guide"></a>

1. M365 E3 or M365 E5 License for admin and test-users
2. Administrative Azure account with sufficient permissions

{% hint style="info" %}

* **AAD-role for Enterprise App Registration:**

Global Administrator, Privileged Role Administrator, Cloud Application Administrator, or Application Administrator

* **AAD-role for Endpoint Manager implementation:**

Global Administrator, Intune Service Administrator

* **AAD-role for Conditional Access:**

Global Administrator, Conditional Access Administrator
{% endhint %}

&#x20;&#x20;

Additional requirements are necessary depending on your Endpoint Manager Environment.

* Microsoft Exchange Online mailbox must be activated for the Test-User. (optional)
* Microsoft Authenticator must be configured for your test-user on the Test-Device.
* The Test-Device (iOS or Android) must be “freshly” enrolled in Endpoint Manager after implementing all policies in this guide, in case you want to test SCA for your devices.
* Apple VPP-Connector connected to Intune, in case you want to automatically push our iOS app via Intune.
* Managed Google Play connected to Intune, in case you want to automatically push our Android app via Intune.

### Guides:

<table data-view="cards"><thead><tr><th data-type="content-ref"></th></tr></thead><tbody><tr><td><a href="ios-mam-steps-to-activate-sca-in-your-azure-tenant">ios-mam-steps-to-activate-sca-in-your-azure-tenant</a></td></tr><tr><td><a href="ios-intune-managed-device-steps-to-activate-sca-in-your-azure-tenant">ios-intune-managed-device-steps-to-activate-sca-in-your-azure-tenant</a></td></tr></tbody></table>

<table data-view="cards"><thead><tr><th data-type="content-ref"></th></tr></thead><tbody><tr><td><a href="android-android-enterprise-steps-to-activate-sca-in-your-azure-tenant-1">android-android-enterprise-steps-to-activate-sca-in-your-azure-tenant-1</a></td></tr><tr><td><a href="android-android-enterprise-steps-to-activate-sca-in-your-azure-tenant">android-android-enterprise-steps-to-activate-sca-in-your-azure-tenant</a></td></tr></tbody></table>
