Admin read only

  • Last update on January 20th, 2026

The “Admin read only” page displays your service accounts and lets you manage their re-creation if needed. These accounts are used to read information from Microsoft 365. This section allows you to:

  • View the accounts
  • Recreate all admins
  • Update service account passwords
  • Execute actions and download PowerShell scripts

Recreate read-only administrator accounts

Step 1: enable Management session

Make sure “Management” is set to “ON”. If it is “OFF", activate a management session by clicking the management button at the top of your screen, then selecting the “Turn on management session” button. Wait until management activation is complete.

Turn on the management session

Step 2: recreate admins

Click “Recreate all admins” and wait for the “Admin read-only” accounts to be created. You can view the progress of this task by clicking the notification bell icon next to the Management toggle.

Recreate all admins

Please remember to enable the “Password never expires” option for your service accounts to prevent import interruptions. You can do this directly in CoreView through the “Password never expiresmanagement action.

 

Update service account passwords

Step 1: update password in Microsoft 365 admin center

  • Navigate to the Microsoft 365 admin center
  • In the “Active users” report, locate the desired CoreView service account and click the “Reset password” icon. 
Find the service account and select the “Reset password” icon

Enter a new, strong password. Click the “Reset password” button at the bottom of the modal to confirm.

Enter a new password and click “Reset password”

Step 2: validate password in CoreView

On the “Admin read-only” page, click the “Edit” button next to the same service account. 

Edit service account's password

Enter the new password twice and press “Validate”. 

Validate the new password
  • If the password matches the one updated in the Microsoft 365 admin center, a success message appears at the top of the page. 
  • Click “Save”.

Execute “SendAs”

The Retrieve function must be run manually by clicking the “Execute” button. If you do not run this script, “SendAs” permissions will not be loaded for mailboxes in your tenant.

In summary, running this script is necessary to display mailbox “SendAs” permissions in CoreView reports.

Execute SandAs