SharePoint Online Administration Fundamentals: Essential Guide for Microsoft 365 Admins
SharePoint Online Administration Fundamentals – A Practical Guide
SharePoint Online is one of those services that quietly powers a huge part of Microsoft 365. Teams, OneDrive, Viva, intranet portals, document management… they all lean on SharePoint under the hood.
If you’re a Microsoft 365 admin, you don’t need to be a SharePoint developer to manage it properly—but you do need to understand the basics: what it is, where it fits, what limits apply, and which admin tools you should use.
This guide walks through those fundamentals in a straightforward, admin-focused way.
1. What Is SharePoint Online?
SharePoint Online is the cloud version of SharePoint Server. It’s delivered as a managed service inside Microsoft 365, so:
- No servers to install or patch
- No storage arrays to size or maintain
- High availability and resilience handled by Microsoft
Almost all Microsoft 365 Business, Education, and Enterprise plans include SharePoint Online. Out of the box, it lets users:
- Build sites (communication sites, team sites, hubs, etc.)
- Create pages, document libraries, and lists
- Add web parts to pages (news, quick links, hero banners, lists, etc.)
- Search across sites, files, and people in the organization
- Use workflows, forms, and lists to automate processes
- Sync and share files from document libraries to their devices
- Collaborate with colleagues in real time on Office documents
As an admin, your job is mainly to decide how people can use these capabilities and who can access what.
2. Capacity and Limits – What You Get
SharePoint Online is designed to scale well beyond what many on-prem farms could comfortably handle.
Typical limits (from the transcript):
- Organization storage:
- 1 TB per tenant
- 10 GB per licensed user
- You can buy additional storage up to 25 TB per site collection.
- 1 TB per tenant
- Site collections: Up to 2 million per tenant.
- Files and folders in a library: Up to 30 million.
- Versioning: Up to 50,000 versions per file (actual defaults are usually much lower for sanity).
The key takeaway: you’re unlikely to hit capacity limits in normal business scenarios, but you should still plan storage and versioning policies so libraries don’t become unmanageable.
3. Where SharePoint Fits with OneDrive, Teams, and Yammer
Microsoft 365 has several collaboration tools that can look similar at first glance. A simple way to think about them:
- OneDrive for Business – “My files”
- Personal workspace for each user
- Great for drafts, personal work, and files not yet ready for team sharing
- Users can share from OneDrive, but it’s not ideal as the long-term home for team content.
- Microsoft Teams – “Team work”
- Persistent chat, channels, meetings, apps
- Each standard team channel uses a SharePoint document library folder behind the scenes for file storage.
- Best for focused collaboration within a project or department.
- Yammer / Viva Engage – “Org-wide conversations”
- Social / community style communication across large groups and the entire company.
- Good for announcements, communities of practice, Q&A.
- SharePoint Online – “Intranet and structured content”
- Intranet home sites, department portals, project sites, knowledge bases.
- Designed for publishing, structured document management, and broader audiences.
- Often the “front door” for company news, policies, HR info, and cross-team content.
You’ll often see Teams and SharePoint working together:
- Creating a Microsoft 365 group or team automatically creates a SharePoint site.
- Files in Teams channels are stored in that SharePoint site’s document library.
4. Core Administrative Tasks in SharePoint Online
As an admin, the common tasks you’ll deal with include:
- Creating and managing sites / site collections
- Modern admin center calls them “sites”, but the underlying concept is site collections.
- Allocating and monitoring storage
- Adjusting storage quotas per site
- Watching overall tenant storage consumption
- Managing permissions and users
- Site owners, members, visitors
- Permission levels and SharePoint groups
- Securing content
- External sharing rules
- Access policies for unmanaged devices
- Legacy protocols and auth controls
- Managing user profiles and personal sites (OneDrive)
- Profile properties
- MySites / OneDrive provisioning behaviour
- Configuring external data and search
- Search schema, result sources, query rules
- Integrations with external data (where applicable)
- Enabling or disabling specific features
- SharePoint Online feature flags, global settings, classic features
Most of this is done through the SharePoint admin center, sometimes via the Microsoft 365 admin center, and often scripted with PowerShell.
5. SharePoint Settings in the Microsoft 365 Admin Center
The Microsoft 365 admin center provides high-level, tenant-wide controls.
5.1 External sharing basics
- Go to Settings > Org settings.
- On the Services tab, find SharePoint.
Here you can set the default external sharing level for SharePoint sites created in your organization. Options usually include:
- Only people in your organization
- No external sharing at all. Most secure, most restrictive.
- Existing guests only
- Only guests already present in your Entra ID directory can be used.
- New and existing guests
- Users can invite new guests; guests sign in or verify via code.
- Anyone
- Users can share links that don’t require sign-in (anonymous links). Least secure, most flexible.
This setting defines the upper limit for what individual sites can do; each site can be equal or more restrictive than the tenant level but never more permissive.
5.2 Group and Teams creation (and the automatic SharePoint site)
From Teams & groups > Active teams & groups you can:
- Create a Microsoft 365 group.
- When you do this and choose to create a team for that group, Microsoft 365 automatically creates:
- A Team
- A SharePoint site behind it
Example flow:
- Create a group named
Andy Demo with SharePoint. - Assign Adele as the owner.
- Add members (e.g., Aaron, Alex, Alice).
- Set group email address and choose Public or Private.
- Choose to create a team for the group.
Later, in the SharePoint admin center, you’ll see a site named Andy Demo with SharePoint corresponding to that group/team.
6. SharePoint Admin Center – Key Areas
The SharePoint admin center is your main portal for managing SharePoint Online.
6.1 Active sites
Under Active sites you can:
- View all sites, including those created from Teams, groups, or directly.
- See and edit key properties:
- Site name
- URL / site address (can be renamed)
- Storage limit (e.g., 25 TB per site max)
- Template and type (communication vs team site, etc.)
- Activity metrics (files, visits, sharing trends)
- Manage owners and members:
- Site owners, site members, site visitors
- Additional admins
You can also click through to view the actual site as an owner or admin.
6.2 Sharing policies (tenant level)
From the left navigation, Policies > Sharing lets you control sharing for:
- SharePoint
- OneDrive
You’ll see sliders or options from “Anyone” (most permissive) to “Only people in your organization” (most restrictive).
Important behaviours:
- SharePoint’s setting acts as the ceiling for OneDrive—all OneDrive settings must be at or below the SharePoint level.
- You can make OneDrive more restrictive than SharePoint, but not more permissive.
- You can still override sharing at the individual site level to be stricter than tenant defaults.
6.3 Access control
Access control options help you protect content in more advanced ways, including:
- Unmanaged devices
- Block access from devices that aren’t compliant or joined
- Allow web-only access but block download
- Network locations
- Restrict access to specific IP ranges / locations
- Apps that don’t support modern authentication
- Block or limit legacy protocols
- OneDrive restrictions
- Restrict OneDrive to specific security groups
These settings are important when you pair SharePoint with Conditional Access and Intune.
6.4 Settings – site creation, storage, and more
Under Settings you can configure:
- Notifications and reports
- Pages and site creation options
- Default site storage limits
For example, Site creation settings let you:
- Decide whether users can create SharePoint sites themselves
- Show or hide “Create site” in SharePoint and “Create shared library” in OneDrive
- Set defaults for:
- Site type (team vs communication)
- URL prefix
- Default sensitivity or classification labels
These global settings act as guardrails for what regular users can do.
7. SharePoint Online PowerShell – Admin Essentials
For bulk operations and automation you’ll often use SharePoint Online PowerShell.
7.1 Install the module
On an admin workstation or management VM:
Install-Module -Name Microsoft.Online.SharePoint.PowerShell
You might need to confirm the PSGallery repository and trust prompts.
7.2 Connect to SharePoint Online
You connect specifically to the SharePoint admin site:
# Example: tenant short name is contoso
Connect-SPOService -Url "https://contoso-admin.sharepoint.com"
From the transcript:
- If your tenant domain is
4mvfff.onmicrosoft.com, your admin URL ishttps://4mvfff-admin.sharepoint.com. - For
contoso.com, it’shttps://contoso-admin.sharepoint.com.
You’ll be prompted to authenticate with admin credentials (ideally an account with SharePoint admin or Global admin privileges, protected by MFA).
7.3 List sites
To list all sites:
Get-SPOSite
This returns URLs, storage info, and more. You can filter or select specific properties:
Get-SPOSite | Select-Object Url, Owner, StorageUsageCurrent, StorageQuota
To get details for a specific site:
Get-SPOSite -Identity "https://contoso.sharepoint.com/sites/SalesReport"
7.4 Create a new site
You can create a new classic-style site collection with New-SPOSite:
New-SPOSite `
-Url "https://contoso.sharepoint.com/sites/SalesReport" `
-Owner "AlexW@contoso.com" `
-Template "STS#0" `
-Title "Sales Report" `
-StorageQuota 10240 # in MB
Parameters:
-Url– full URL of the new site.-Owner– primary owner (e.g.,AlexW@contoso.com).-Template– template ID (e.g.,STS#0for a team site, others for different designs).-Title– display name.-StorageQuota– storage in MB.
After creation, you’ll see the site in:
- SharePoint admin center > Active sites
- PowerShell via
Get-SPOSite
From there you can adjust more advanced settings as needed.
7.5 Combine Graph with SharePoint cmdlets
It’s common to connect to MgGraph in the same session if you also need:
- User and group information
- Azure AD / Entra ID details tied to site owners/members
Typical pattern:
Connect-MgGraph -Scopes "User.Read.All","Group.Read.All"
Connect-SPOService -Url "https://contoso-admin.sharepoint.com"
Then you can query sites and correlate them to groups and Teams.
8. Practical Tips and Best Practices
To run SharePoint Online smoothly, keep these practical points in mind:
- Plan your information architecture.
- Use hub sites, communication sites, and team sites deliberately.
- Avoid hundreds of random sites with no structure.
- Control site creation.
- Decide if everyone can create sites, or only specific roles/owners.
- Consider using templates or provisioning scripts for consistency.
- Standardize sharing policies.
- Decide where anonymous links are allowed (if at all).
- Use stricter sharing for sensitive departments (HR, Finance).
- Watch storage and versioning.
- Set sensible default version limits (e.g., 100–500, not 50,000).
- Use reports and alerts to monitor sites close to quotas.
- Align with Teams governance.
- Remember: every team usually has a SharePoint site.
- Keep naming, retention, and sensitivity labels aligned between Teams and SharePoint.
- Use PowerShell for repetitive tasks.
- Bulk create or update sites.
- Export site lists with owners, storage, activity for audits.
- Document your decisions.
- External sharing model
- Site types and when to use them
- Who can request or create new sites
- Who owns what content
SharePoint Online takes care of the heavy lifting—servers, storage, and patching. Your focus as an admin is on structure, security, and governance: how sites are created, who can access them, and how content is shared and stored. Once you’re comfortable with the admin centers and a few core PowerShell cmdlets, managing SharePoint Online becomes a lot more predictable and much easier to scale across your organization.
