Knowledge base / Intranet Builder / Automated installation
Automated mode
The same engine, run as queued jobs in your own Azure subscription. Setup Center submits jobs to an Entra ID protected API; a PowerShell worker performs them with its managed identity. The API never calls SharePoint. Details: docs/AUTOMATED-MODE.md and docs/PROVISIONING-API.md.
How a job flows
- Setup Center calls
POST /api/jobswith an Entra token (user_impersonationscope +Intranet.Provisionrole). - The API validates the token and configuration, authorizes the target site against the approved site patterns, stores the job (Table + Blob) and queues it.
- The worker claims the job with a lease and runs it with the engine under its managed identity (
Sites.Selected, granted sites only), writing progress and checkpoints as it goes. - Jobs can be listed, inspected, cancelled and resumed from Setup Center. No secrets or keys exist anywhere: Storage refuses shared keys and Application Insights accepts only Entra ID telemetry.
Setup (after the first administrator-run sites)
- Deploy
infra/main.bicep(two Function Apps, identities, Storage, App Insights) withtenantId,sharePointHostNameandapprovedSitePatterns. - Zip-deploy
provisioning-api.zipandprovisioning-worker.zip(npm run build:api). Register-ProvisioningApi.ps1 -FunctionAppName -AssignTocreates the Entra registration and role assignments.Grant-WorkerPermissions.ps1 -WorkerPrincipalIdgrants Graph access (Sites.Selectedby default);Grant-IntranetSiteAccess.ps1 -SiteUrl -WorkerAppIdgrants per-site access (intranet FullControl, admin Write, catalog Read).- Approve the Administration package's
user_impersonationrequest, then switch Setup Center to Automated mode and test the connection.
LimitsInstall cannot deploy packages, register hubs or create sites unless
allowSiteCreation (needs Sites.FullControl.All). One changing job per site (IB1009). Plan/Test are read-only.Still need help?Our team answers product questions by email, and we can walk you through it on a call.
Open in the full guideContact support