How Teams, SharePoint, and OneDrive work together in Microsoft 365 — M365 Group architecture, file storage, and Exchange integration

How Teams, SharePoint, and OneDrive Work Together in Microsoft 365

📄 Article

How Teams, SharePoint, and OneDrive Work Together in Microsoft 365

Microsoft Teams, SharePoint Online, and OneDrive for Business are not three separate products — they are a single integrated architecture sharing storage, identity, and communication infrastructure. When you upload a file in a Teams channel, it lands in SharePoint. When you send a file in a Teams chat, it goes to OneDrive. Every Team has a backing SharePoint site, and every OneDrive is a personal SharePoint site collection. Understanding this interconnection is essential for every Microsoft 365 administrator.

🏗️ The Microsoft 365 Collaboration Architecture

Microsoft Teams

Microsoft Teams

The collaboration interface — channels, chats, meetings. Teams does not store any files itself.

SharePoint Online

SharePoint Online

Stores all channel files. Every Team has a backing SharePoint team site and document library.

OneDrive for Business

OneDrive for Business

Stores personal files and chat attachments. Is itself a personal SharePoint site collection (MySite).

💡 The Key Principle

Teams is the front-end collaboration layer. SharePoint and OneDrive are the storage layer. Exchange Online is the communication and calendar layer. Entra ID (via Microsoft 365 Groups) is the identity and membership layer. Remove any one, and Teams stops functioning correctly.

🔗 The Microsoft 365 Group — The Glue That Holds It Together

When you create a Microsoft Team, Microsoft 365 creates a Microsoft 365 Group in Entra ID behind it. This single group object drives everything:

Resource What the M365 Group Provides
Microsoft Teams Team membership = Group membership. Adding someone to the Team adds them to the group.
SharePoint Team Site Automatically created. Group members = Site Members. Group owners = Site Collection Admins.
Exchange Mailbox A shared group mailbox is created for the team’s email communications and meeting invites.
Planner A Planner plan is associated with the group for task management across the team.
OneNote A shared notebook is created and stored in the backing SharePoint site.

⚠️ Admin Implication

Because Teams is backed by an M365 Group, deleting a Team also deletes its M365 Group — which removes the backing SharePoint site, shared mailbox, and Planner. There is a 30-day soft-delete window for recovery. Always check dependencies before deleting a Team.

📁 Teams ↔ SharePoint Online — Channel File Storage

Every file shared or uploaded in a Teams channel is stored in the backing SharePoint team site’s document library. The folder structure mirrors the channel structure exactly.

Channel Type SharePoint Storage Site Collection
Standard Channel Folder in the team’s main SharePoint document library Shared with the whole team
Private Channel Own dedicated SharePoint site collection Only private channel members
Shared Channel Own dedicated SharePoint site collection Can include external org users

💡 What This Means for Admins

  • Team members automatically get access to the SharePoint site — no separate SharePoint access grant needed
  • SharePoint admin controls (retention, sharing, Conditional Access) apply directly to Teams channel content
  • Private and shared channels each create their own site collection — managed and governed independently of the parent team
  • Deleting a Team soft-deletes its SharePoint site for 30 days before permanent deletion

💬 Teams ↔ OneDrive — Chat File Storage

⚠️ The Most Tested Architecture Point in Interviews

Files shared in 1:1 or group chats (not channels) are stored in the sender’s OneDrive under a folder called “Microsoft Teams Chat Files” and shared with recipients. They do NOT go to the team’s SharePoint site. If a user leaves the organisation, those chat files follow the departed user’s OneDrive retention path.

Where File Is Shared Where It Is Stored Who Owns the Storage
📢 Standard channel Team’s SharePoint document library (channel folder) The Team / M365 Group
🔒 Private channel Private channel’s own SharePoint site Private channel members
🌐 Shared channel Shared channel’s own SharePoint site Shared channel members
💬 1:1 or group chat Sender’s OneDrive → “Microsoft Teams Chat Files” The individual sender

☁️ OneDrive for Business — A Personal SharePoint Site Collection

💡 Architectural Reality

OneDrive for Business is not a separate product. It is a personal SharePoint site collection (MySite) provisioned for each licensed user at https://<tenant>-my.sharepoint.com/personal/<username>. Every SharePoint admin tool, Purview retention policy, PowerShell command, and external sharing control that works on SharePoint sites also applies equally to OneDrive.

Aspect OneDrive for Business SharePoint Team Site
Ownership One per licensed user — personal storage Shared team or department sites
Architecture Personal SharePoint site collection (MySite) Group-connected or standalone site collection
Default access Private to the owner only Shared with team members
Teams chat files ✅ Chat attachments stored here ❌ Channel files go to SharePoint instead
Purview retention Applies — same as any SharePoint site Applies — same policies work on both

📅 Teams ↔ Exchange Online — Meetings and Calendar

💡 How Teams Meetings Actually Work

Teams meetings are Exchange Online calendar events. When a meeting is scheduled, Teams injects the join link into the event body — but Exchange handles the calendar entry, invite delivery, free/busy lookups, room booking, reminders, and voicemail. This is why Teams meetings appear in Outlook automatically, and why “In a meeting” presence in Teams comes from Exchange calendar data.

Teams Feature Powered By Exchange Online
Schedule a Teams meeting Creates an Exchange calendar event with Teams join link injected
“In a meeting” presence Driven by Exchange calendar free/busy data
Room/resource booking Exchange room mailboxes and resource calendars
Voicemail (Teams Phone) Delivered to the user’s Exchange mailbox
Teams add-in in Outlook Requires an Exchange Online mailbox and Teams desktop app

🛡️ Admin Implications of the Shared Architecture

  • SharePoint controls affect Teams — external sharing settings, Conditional Access, and Purview retention on SharePoint sites all apply to Teams channel content
  • Deleting a Team deletes its SharePoint site (30-day soft-delete) — verify if the SharePoint site is used independently before decommissioning
  • Private channel sites are separate — each private channel has its own site collection that must be governed independently
  • Chat files follow the sender’s OneDrive lifecycle — when a user leaves, their Teams chat files go through the departed user OneDrive retention path
  • Exchange health affects Teams meetings — Exchange Online issues degrade Teams scheduling, calendar sync, and presence
  • M365 Group creation policy controls Team creation — restricting who can create M365 Groups in Entra ID is the lever to control Teams sprawl

🔗 Deep-Dive Guides for Each Service

🎓 Common Interview Questions

Microsoft Teams — Architecture & Integration

Q: How do Teams and SharePoint Online integrate for file storage?
Every Team has a backing SharePoint team site. Files shared in a standard channel are stored in that site’s document library — one folder per channel. Private and shared channels each get their own separate SharePoint site collection. Files shared in 1:1 or group chats (not channels) are stored in the sender’s OneDrive and shared with recipients. Team membership via the M365 Group also grants access to the SharePoint site — adding a member to the Team automatically grants them site access.
Q: What are the three channel types in Teams and how do they differ?
Standard channels are visible to all team members and store files in the team’s SharePoint site. Private channels are visible only to invited members (a subset of the team) and get their own separate SharePoint site collection. Shared channels can include users from other Teams or external organisations, also get their own SharePoint site, and can only be created by team owners. Files in 1:1 chats go to the sender’s OneDrive — not to any channel.
Q: What is the difference between external access and guest access in Microsoft Teams?
External access (federation) lets your users chat, call, and meet with people in other Microsoft 365 organisations — the external user stays in their own tenant, no account is created in yours, and they cannot access your teams, channels, or files. Guest access creates a B2B guest account in your Entra ID and adds the person into a specific Team as a member, giving them channel, chat, file, and meeting access within that Team. External access is for communication; guest access is for collaboration.
Q: How does Teams integrate with Exchange Online for meetings and calendar?
Teams meetings are Exchange Online calendar events under the hood — Teams adds the join link and conference details to the event body, while Exchange handles the actual invite, calendar entry, free/busy lookups, room booking, and reminders. This is why Teams meetings appear in Outlook without any additional sync. Calendar-based presence (“In a meeting”) in Teams is driven by Exchange calendar data, and voicemail from Teams calls is delivered to the user’s Exchange mailbox.
Q: What permissions are required to manage Teams policies in the admin center?
The Teams Administrator role provides full access to the Teams admin center including all policies, meetings, calling, devices, and apps. More granular roles exist: Teams Communications Administrator (calling and meeting policies only), Teams Communications Support Engineer (read-only call quality troubleshooting). Global Administrator has full access but should not be used for routine Teams admin — the dedicated Teams Administrator role follows least-privilege best practice.
Q: How do you manage the lifecycle of Teams to prevent sprawl?
Restrict team creation to approved users via the Entra ID M365 Group creation policy. Apply naming policies (prefix/suffix conventions) to enforce consistent naming. Configure an Entra ID Group expiry policy so inactive teams are flagged for renewal by owners — if not renewed, they are automatically deleted after a grace period. For teams that are completed but should be preserved, use archival (read-only mode) rather than deletion. Regularly audit team ownership to ensure every team has at least two owners.

SharePoint Online — Sites, Sharing & Permissions

Q: What is the difference between a Team site and a Communication site in SharePoint Online?
A Team site is backed by a Microsoft 365 Group and is designed for collaboration within a specific group — every Microsoft Team has one automatically. A Communication site has no M365 Group, is designed for broadcasting content to a wide audience (intranets, announcements, HR portals), and permissions are managed directly by the site owner. Team sites are “inside-out” (members contribute), Communication sites are “outside-in” (a few publish, many read).
Q: What are the four external sharing levels in SharePoint Online?
From most to least permissive: Anyone (anonymous links, no sign-in required), New and existing guests (authentication required — sign-in or one-time passcode), Existing guests only (only users already in your Entra ID directory), and Only people in your organisation (no external sharing at all). Site-level sharing can only be equal to or more restrictive than the tenant level — never more permissive.
Q: How do you block external sharing of a specific SharePoint site?
In the SharePoint admin center → Sites → Active sites → select the site → Settings → External sharing, set it to “Only people in your organisation”. Via PowerShell: Set-SPOSite -Identity <SiteURL> -SharingCapability Disabled. The site setting overrides the tenant setting for that site only, and can be more restrictive but never more permissive than the tenant level.
Q: How do you restrict SharePoint sharing to specific external domains?
Use domain restrictions in SharePoint admin center → Policies → Sharing → limit by domain. Choose an allow list (only named partner domains can be shared with) or a block list (all domains except the named ones). PowerShell: Set-SPOTenant -SharingDomainRestrictionMode AllowList -SharingAllowedDomainList "partner1.com partner2.com".
Q: A user has site access but cannot open a specific document library — what do you check?
Check for broken permission inheritance on the library. Go to Library Settings → Permissions — if it says “This library has unique permissions”, it has been disconnected from the site’s permission model with its own independent set. Use Check Permissions (Site Settings → Site permissions → Check Permissions) to confirm exactly what access the user has on that specific library, then restore inheritance or add the user directly if appropriate.
Q: What are hub sites and why would you use them?
Hub sites allow you to associate related SharePoint sites under a parent hub to share navigation, branding, and search scope. News and events from associated sites roll up to the hub home page. Only SharePoint Administrators can register a site as a hub. They are the recommended alternative to subsite hierarchies, which are complex to manage and don’t scale well. A site can be in only one hub at a time.
Q: What permissions are needed to administer SharePoint Online?
The SharePoint Administrator role grants access to the SharePoint admin center and full control over all site collections. A Site Collection Administrator has full control over a specific site without broader admin rights. Global Administrator also has full SharePoint access but should not be used for routine administration — the dedicated role follows least-privilege best practice.

OneDrive for Business — Personal Storage & Administration

Q: What is the architectural relationship between OneDrive for Business and SharePoint Online?
OneDrive for Business is a personal SharePoint site collection — every licensed user’s OneDrive is a MySite hosted in SharePoint Online under the -my.sharepoint.com subdomain. All SharePoint admin tools, Purview retention policies, external sharing controls, and PowerShell commands that work on SharePoint sites also apply to OneDrive. The distinction is that OneDrive is private to the owner by default, while SharePoint sites are shared with teams.
Q: A user permanently deleted files from OneDrive — what are the recovery options?
First check the OneDrive Recycle Bin (first-stage). If emptied, check the second-stage (site) recycle bin — both stages together retain items for 93 days. For mass deletion or ransomware, use “Restore your OneDrive” to roll the entire library back to any point in the last 30 days. For individual file versions, version history is available on Office files (up to 500 versions). If a Purview retention policy was in place, content may be recoverable via eDiscovery even after the recycle bin window expires.
Q: How would you configure OneDrive Known Folder Move (KFM) for an organisation?
Deploy KFM via Group Policy (using OneDrive ADMX templates) or an Intune device configuration profile (Settings Catalog or Administrative Templates). Configure the Tenant ID setting and specify which folders to redirect — Desktop, Documents, Pictures. Use silent redirection for managed enterprise devices. Optionally block users from redirecting folders back to prevent circumvention.
Q: What happens to a user’s OneDrive when their account is deleted?
The OneDrive is retained for a configurable period (default 30 days, configurable up to 10 years in SharePoint admin center → Settings → Retention). During this window, the user’s manager receives an email notification with access. An admin can also grant access via PowerShell (Set-SPOUser -IsSiteCollectionAdmin $true). After the retention period, the OneDrive is permanently deleted unless a Purview retention policy extends the window.
Q: How do you restrict OneDrive sync to only managed or corporate devices?
In the SharePoint admin center → Settings → OneDrive → Sync, enable “Allow syncing only on PCs joined to specific domains” and enter your Entra ID domain’s GUID. For Intune-compliant device enforcement, configure a Conditional Access policy in Entra ID targeting the OneDrive sync app, requiring device compliance. This prevents employees from syncing corporate OneDrive content to personal or unmanaged laptops.
Q: What is OneDrive Files On-Demand and why is it important?
Files On-Demand shows all OneDrive files in Windows Explorer as placeholders without downloading them locally — files are only downloaded when opened. Users see their full OneDrive without consuming local disk space. Enabled by default on Windows 10/11. Icons indicate status: cloud-only (☁️), locally available (✅), or always kept on device (⚡). Especially valuable for devices with limited SSD storage.

📚 References & Further Reading

Explore the Complete Administration Guides

Now that you understand how these services connect, go deeper into each one with our dedicated administration guides.

Leave a Comment

Your email address will not be published. Required fields are marked *