[Progic] How to Enable Custom Streaming (RTMP-Out) in Microsoft Teams for Live-streaming?
Understanding Meeting Policies, App Permissions, and Access Governance
This article guides administrators on configuring Custom Streaming in Microsoft Teams, a feature used to broadcast meetings and webinars to external platforms compatible with RTMP-Out.
For this feature to work correctly, you must validate two main areas: the meeting policy, which enables live streaming, and the app policy, which allows authorized users to use the Custom Streaming application.
-
-
-
Step 1 – Verify Application Availability
-
Step 2 – Enable the Application at the Organizational Level
-
Step 4 – Verify Meeting Policy Requirements
-
Recommended Configuration for Enterprise Environments
-
Security and Compliance Considerations
The Custom Streaming App
The Custom Streaming app allows Microsoft Teams meeting and webinar organizers to stream content to external platforms compatible with RTMP, including enterprise streaming solutions, private video platforms, and content delivery services.
For large enterprise environments, it is recommended to:
- Enable the app in the Teams organizational catalog.
- Keep the app unavailable to most users.
- Grant access only to specific users or groups.
- Control functionality through Microsoft Teams app policies and meeting policies.
This approach reduces risks of misuse, unauthorized broadcasts, and accidental exposure of corporate information.
Prerequisites
The administrator must hold one of the following roles:
- Teams Administrator
- Global Administrator
Additionally:
- The app must be allowed in the Microsoft Teams Admin Center.
- Authorized users must have licensing compatible with the meeting and webinar features used by the organization.
- Meeting policies must allow RTMP streaming where applicable.
Step 1 – Verify App Availability
Access the Microsoft Teams Admin Center:
- Go to Teams Apps → Manage Apps.
- Search for: Custom Streaming.
- Validate that the app:
- Is published by Microsoft.
- Has the status Allowed.
- Is not explicitly blocked.
If it is blocked:
- Open the app.
- Select Allow.
- Save the changes.
Important: Allowing the app at this stage only makes it available for use in the organization. It does not grant access to end-users.
Step 2 – Enable the App at the Organizational Level
After locating the app:
- Go to Teams Apps → Manage Apps → Custom Streaming.
- Confirm that the status is Allowed.
This procedure enables the app for organizational governance, allowing it to be subsequently granted to specific users.
Step 3 – Granular Access Control per User (Recommended)
Organizations using App-Centric Management
Microsoft is progressively migrating tenants to the App-Centric Management model. In this model, control is managed directly within the app settings.
- Access: Teams Apps → Manage Apps.
- Open the app: Custom Streaming.
- Select: Users and Groups.
- Click: Edit Availability.
| Option | Description |
| Everyone | All users in the organization will be able to use the app. |
| Specific Users or Groups | Only defined users or groups will have access. |
| No one | The app will be blocked for the entire organization. |
Recommended Configuration
- Select: Specific Users or Groups.
- Add: Individual authorized users, Microsoft Entra ID Security Groups, Microsoft 365 Groups, or dynamic corporate groups.
- Click Apply and wait for policy propagation.
Step 4 – Organizations Still Using App Permission Policies
For tenants not yet migrated to the App-Centric Management model:
- Create Permission Policy: Access Teams Apps → Permission Policies, select Add, and name it (e.g., CustomStreaming-AllowedUsers). Set "Custom Apps" to "Allow specific apps" and add Custom Streaming.
- Assign Policy: Access Users → Manage Users, select the authorized user, go to Policies, and assign the newly created policy.
Step 5 – Using Groups Instead of Individual Users
For large organizations, it is strongly recommended to use security groups to improve Governance, Scalability, and Auditing.
Step 6 – Enable Streaming in Meeting Policies
Even with the app available, you must ensure meeting policies allow it:
- Go to Meetings → Meeting Policies.
- Ensure the policy assigned to authorized users allows:
- Streaming to external platforms.
- RTMP Out.
-
Streaming features compatible with the strategy adopted by the organization.
-
If the functionality is disabled in the Meeting Policies, the user will be able to see the app, but will not be able to start the stream.
Recommended Process for Corporate Environments
- Allow the app in the organizational catalog.
- Configure availability as: Specific Users and Groups.
- Create a dedicated group: SG-M365-Teams-CustomStreaming.
- Associate the app exclusively with that group.
- Assign appropriate meeting policies to the users in that group.
- Perform periodic access reviews.
Security Considerations
Before enabling the use of Custom Streaming, it is recommended to evaluate:
- Classification of meetings eligible for streaming;
- Need for prior approval for external events;
- Retention and recording policies;
- Protection of confidential information;
- Local and international compliance requirements;
- Integration with external streaming platforms.
It is also recommended to maintain a formal record of users authorized to use external streaming on behalf of the organization.
Expected Result
After the recommended configuration:
| Item | Result |
| App available in the tenant | Yes |
| Standard users can use it | No |
| Authorized users can use it | Yes |
| Centralized IT control | Yes |
| Corporate governance maintained | Yes |
| Scalability for multinational environments | Yes |
Note: In tenants already migrated to the App-Centric Management model, Microsoft recommends controlling availability directly by the app, assigning specific users and groups to the app, replacing old App Permission Policies.