eG Monitoring
 

Measures reported by O365SecurityGrpsTest

A security-enabled distribution group (or security group) is created so that you can assign permissions to a large group of users instead of assigning permissions to individual users one at a time.

Use this test to periodically take stock of security groups that are created newly. With the help of this test, soft-deleted, orphaned, and empty groups can also be identified. This way, you can easily and efficiently maintain the inventory of security groups.

Outputs of the test : One set of results for the Office 365 tenant being monitored.

The measures made by this test are as follows:

Measurement Description Measurement Unit Interpretation
Newly_created_groups Indicates the number of groups that were newly created during the last measurement period. Number Use the detailed diagnosis of this measure o know which groups were created.
Soft_deleted_groups Indicates the number of groups that have been soft-deleted. Number If you have deleted an Office 365 group, by default it's retained for 30 days. This 30-day period is called “soft-delete” because you can still restore the group. After 30 days, the group and associated content is permanently deleted and cannot be restored.

During the “soft-delete” period if a user tries to access the site they will get a 403 forbidden message. After this period if the user tries to access the site they will get a 404 not found message.

Use the detailed diagnosis of this measure to know which groups were soft-deleted.
Total_groups Indicates the total number of security groups. Number  
Orphaned_groups Indicates the number of groups that are orphaned/ownerless. Number If a group owner leaves your company the group could find itself without an owner. Such a group is called an Orphaned group. The content in the group is unaffected by this - the content belongs to the group and isn't tied to the owner's account. But not having a group owner means there's nobody with permissions to manage the group.

Use the detailed diagnosis of this measure to know which groups are orphaned / ownerless.
Empty_groups Indicates the number of groups that are empty currently. Number Use the detailed diagnosis of this measure to identify the empty groups.