All pages
Powered by GitBook
1 of 5

Loading...

Loading...

Loading...

Loading...

Loading...

Integration

Required permissions
API limits
Adding Azure DevOps organization to GitProtect
Adding Azure DevOps Server to GitProtect
Cover
Cover
Cover
Cover

API limits


Rate limits enhance security by preventing an overwhelming number of requests that could disrupt, block, or destabilize the application's functionality—the system enforces these limits for stability. For more information, visit .


In Azure DevOps Server (on-premises), API limits are flexible and depend on server resources and configuration. Unlike the cloud version, there are no fixed, global request limits—administrators set performance parameters and limits tailored to the organization's specific needs.

API limits for Azure DevOps and Azure DevOps Server outline the restrictions on requests that can affect how Xopero ONE interacts with your data.

Azure DevOps

Unfortunately, unlike other DevOps, Microsoft does not provide information about the exact number of queries that can be sent in a given time period.

Azure DevOps Server

the official Microsoft Learn website

Adding Azure DevOps organization to GitProtect

This article explains how to add an Azure DevOps organization to GitProtect.

Adding an Azure DevOps organization to GitProtect connects your environment to the platform, enabling secure backup of projects, repositories, and related data.


Using OAuth

1

Log in to GitProtect Management Service, open the DevOps tab on the left side of the window, and select Azure DevOps from the list.

2

Click the Connect button under Azure DevOps.

3

, log in with a user account which has the required permissions for the repositories or projects to protect. If your Azure login session is active in a different tab, the login will complete automatically.

4

Check the Consent on behalf of your organization checkbox and click Accept to proceed.

5

Your Azure DevOps organization has now been successfully added to GitProtect. Click Custom policy to adjust your backup policy settings, or click Run backup to execute the backup immediately using the current policy configuration.


1

Log in to GitProtect Management Service, open the DevOps tab on the left side of the window, and select Azure DevOps from the list.

2

Click the advanced mode link under Azure DevOps and Azure DevOps Server tiles.

3

When adding an organization, you may be prompted to grant additional permissions to the GitProtect application — make sure your browser allows GitProtect to open pop-up windows.

Depending on your browser, you can either adjust the settings to allow pop-ups or permit the authorization window to open once.

Required permissions

Full list of permissions required for integrating Azure DevOps and Azure DevOps Server with GitProtect.


The account used for integration must have an appropriate access level assigned within Azure DevOps:

  • Basic.

  • Visual Studio Subscriber — professional or enterprise tier.

Set your authentication method.

  1. In Authentication, select Azure DevOps.

  2. For Connect using, choose Username and Personal Access Token.

  3. Add or select PAT from the Password Manager.

  4. Choose whether GitProtect should automatically add new repositories to your backup.

4

Configure your repository sync and default worker. Specify hours for synchronization, or set a time interval for automatic updates.

Cloud workers cannot access local network storage. Choose a device with the necessary access if backing up locally.

5

Click Proceed to complete adding your Azure DevOps organization and grant GitProtect access to the specified resources.

6

Your Azure DevOps organization has now been successfully added to GitProtect. Click Custom policy to adjust your backup policy settings, or click Run backup to execute the backup immediately using the current policy configuration.

Using a Personal Access Token (PAT)

Additional browser permissions

In the window that pops-up
GitHub Enterprise
— similar to basic.
  • Stakeholder (not recommended) — this level has limited access and cannot properly protect repositories.

  • To integrate Azure DevOps with GitProtect using OAuth, make sure the account has an administrator role. Otherwise, you may encounter permission errors or find that the approval button is inactive.

    When integrating Azure DevOps via OAuth, the following scopes are required:

    The ability to authorize the GitProtect OAuth application depends on your organization's User consent settings within Azure DevOps. The following options are available:

    Consent policy
    Authorization requirement

    Allow user consent for apps from verified publishers, for selected permissions

    Any user can authorize the app, provided that all requested permissions are classified as low impact by your administrator.

    Do not allow user consent

    Only users with the Application Administrator or Global Administrator role can authorize the integration.

    Let Microsoft manage your consent settings (Recommended)

    To ensure both backup and restore operations succeed, the following permissions are required:

    1. Organization level:

      1. General:

        1. Create new projects (restore)

      2. Boards:

        1. Create process (restore)

        2. Edit process (restore)

    2. Project level:

      1. General:

        1. View project-level information (backup)

    3. Repositories level:

      1. Create branch (restore)

      2. Create repository (restore)

      3. Read (backup)


    For on-premise installations, use the personal access token (PAT) method.

    Required permissions for Azure DevOps and Azure DevOps Server specify the access levels GitProtect needs to securely back up and restore your data.

    Permissions for Azure DevOps

    User access levels

    GitProtect can only protect projects that the integrated user account has explicit access to.

    OAuth integration

    GitProtect supports only organizational accounts (Microsoft Entra ID) — personal accounts are not supported. For private accounts, use PAT instead.

    Installation permissions for OAuth

    Personal Access Token (PAT) integration

    Prerequisites:

    Required scopes:

    When performing a backup with minimal permissions, some metadata might be excluded. To ensure complete protection, select the permissions based on your data protection needs. Note that with read-only permissions, backups can be made, but restoring requires a new token or password with write access.

    Granular permission settings

    Permissions for Azure DevOps Server

    Personal Access Token (PAT) integration

    Prerequisites:

    Required scopes:

    When performing a backup with minimal permissions, some metadata might be excluded. To ensure complete protection, select the permissions based on your data protection needs. Note that with read-only permissions, backups can be made, but restoring requires a new token or password with write access.

    Authorization is subject to Microsoft's current security guidelines. While this currently allows for GitProtect integration, availability may change based on Microsoft's evolving policies.

    Adding Azure DevOps Server to GitProtect

    This article explains how to add an Azure DevOps Server organization to GitProtect.

    Adding an Azure DevOps Server to GitProtect connects your projects and repositories to the platform, enabling seamless backup management and secure data protection.


    Using a Personal Access Token (PAT)

    Azure DevOps Server (self-managed, on-premise) does not support OAuth and requires a personal access token.

    1

    Log in to GitProtect Management Service, open the DevOps tab on the left side of the window, and select Azure DevOps from the list.

    2

    Click the Connect button under Azure DevOps Server.

    3

    Set your authentication method.

    1. In Authentication, select Azure DevOps Server.

    2. Enter the service address of your Azure DevOps Server (IP or DNS name, including the protocol).

    3. Add or select PAT from the Password Manager.

    4

    Configure your repository sync and default worker. Specify hours for synchronization, or set a time interval for automatic updates.

    5

    Click Proceed to complete adding your Azure DevOps Server organization and grant GitProtect access to the specified resources.

    6

    Your Azure DevOps Server organization has now been successfully added to GitProtect. Click Custom policy to adjust your backup policy settings, or click Run backup to execute the backup immediately using the current policy configuration.

    Choose whether GitProtect should automatically add new repositories to your backup.

    Cloud workers cannot access local network storage. Choose a device with the necessary access if backing up locally.