Choose the OneDrive Tenant / Account Type: Common, Consumers, or Organizations

This article explains the current tenant/account choices and when to use common, personal Microsoft accounts, or organization-only accounts before beginning OAuth authorization.

What you need to know

  • OneDrive OAuth uses the Joomla-routed callback, PKCE, encrypted one-time state, tenant normalization, token refresh, and connection/owner binding. Use the Microsoft Client Secret Value, not the Secret ID.

How to do it

  1. Edit or create the OneDrive Storage Connection.
  2. Choose the tenant/account audience that matches the Entra application: common for supported work/school and personal scenarios, consumers for personal Microsoft accounts, or organizations for work/school accounts.
  3. Make sure the Entra App registration was created with a compatible supported account type.
  4. Save and connect/reconnect the Microsoft account.
  5. If Microsoft reports an account-type or tenant error, correct the Entra audience and QCSB tenant setting so they agree rather than repeatedly changing the client secret.

Verify the result

  • Test Connection succeeds.
  • The displayed/usable root is exactly the intended root and no parent folder is reachable.
  • A normal authorized user can perform only the operations intended for that connection/Workspace role.

Troubleshooting

  • If the provider is unreachable, test the connection in Administrator before troubleshooting the Workspace UI.
  • Keep passwords, OAuth secrets/tokens, private keys, and unrestricted private paths out of public screenshots and support posts.

Community Discussion

For practical QCSB workflows and discussion with other Joomla site owners, visit the QC Storage Bridge Community. For private support, bug reports, account-specific entitlement issues, or feature requests, use the QuantaCade support system.