<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
    <title>mailstore-notes.dwlab.me - Microsoft 365</title>
    <link rel="self" type="application/atom+xml" href="https://mailstore-notes.dwlab.me/tags/microsoft-365/atom.xml"/>
    <link rel="alternate" type="text/html" href="https://mailstore-notes.dwlab.me/"/>
    <generator uri="https://www.getzola.org/">Zola</generator>
    <updated>2023-01-01T00:00:00+00:00</updated>
    <id>https://mailstore-notes.dwlab.me/tags/microsoft-365/atom.xml</id>
    <entry xml:lang="en">
        <title>Active Directory with Microsoft 365 Modern Authentication</title>
        <published>2023-01-01T00:00:00+00:00</published>
        <updated>2023-01-01T00:00:00+00:00</updated>
        
        <author>
          <name>
            
              dave
            
          </name>
        </author>
        
        <link rel="alternate" type="text/html" href="https://mailstore-notes.dwlab.me/articles/using-active-directory-with-microsoft-365-mailboxes-modern-authentication/"/>
        <id>https://mailstore-notes.dwlab.me/articles/using-active-directory-with-microsoft-365-mailboxes-modern-authentication/</id>
        
        <content type="html" xml:base="https://mailstore-notes.dwlab.me/articles/using-active-directory-with-microsoft-365-mailboxes-modern-authentication/">&lt;h2 id=&quot;microsoft-365-hybrid-environments&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#microsoft-365-hybrid-environments&quot; aria-label=&quot;Anchor link for: microsoft-365-hybrid-environments&quot;&gt;🔗&lt;&#x2F;a&gt;Microsoft 365 &#x2F; Hybrid environments&lt;&#x2F;h2&gt;
&lt;p&gt;Hybrid environments are complicated, and there is no one-size-fits-all solution. MailStore is more flexible than is immediately obvious but there are a few things to understand.&lt;&#x2F;p&gt;
&lt;h2 id=&quot;mailstore-s-article-abouy-microsoft-365-active-directory-hybrid-environments&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#mailstore-s-article-abouy-microsoft-365-active-directory-hybrid-environments&quot; aria-label=&quot;Anchor link for: mailstore-s-article-abouy-microsoft-365-active-directory-hybrid-environments&quot;&gt;🔗&lt;&#x2F;a&gt;MailStore&#x27;s article abouy Microsoft 365 &#x2F; Active Directory hybrid environments&lt;&#x2F;h2&gt;
&lt;p&gt;&lt;a class=&quot;&quot; rel=&quot;noopener noreferrer&quot; target=&quot;_blank&quot; href=&quot;https:&#x2F;&#x2F;help.mailstore.com&#x2F;en&#x2F;server&#x2F;Archiving_Emails_from_Microsoft_365_Hybrid&quot;&gt;https:&#x2F;&#x2F;help.mailstore.com&#x2F;en&#x2F;server&#x2F;Archiving_Emails_from_Microsoft_365_Hybrid&lt;&#x2F;a&gt;&lt;&#x2F;p&gt;
&lt;h2 id=&quot;further-details&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#further-details&quot; aria-label=&quot;Anchor link for: further-details&quot;&gt;🔗&lt;&#x2F;a&gt;Further details&lt;&#x2F;h2&gt;
&lt;p&gt;It is possible to switch to Microsoft 365&#x27;s Modern Authentication for the purposes of archiving while still using Active Directory as a user synchronization source, and in fact this is easier as it avoids needing to rename the archive folders in your existing archive to match. We will borrow some of the steps from our published documentation, but there are others that we can skip.&lt;&#x2F;p&gt;
&lt;p&gt;As long as your Microsoft 365 environment is synchronized with your local Active Directory, MailStore can use either option as a source for user information and can archive from both Microsoft 365 mailboxes and your on-premises Exchange as well if you happen to have a hybrid environment.&lt;&#x2F;p&gt;
&lt;p&gt;To set things up, login to MailStore Client with an &lt;em&gt;admin&lt;&#x2F;em&gt; account, go to &lt;em&gt;Archive E-mail&lt;&#x2F;em&gt;, under &lt;em&gt;Servers&lt;&#x2F;em&gt; click &lt;em&gt;Microsoft 365&lt;&#x2F;em&gt;. Select &lt;em&gt;Multiple Mailboxes&lt;&#x2F;em&gt;. Now click the &lt;code&gt;...&lt;&#x2F;code&gt; button, which will open the &lt;em&gt;credentials manager&lt;&#x2F;em&gt;.&lt;&#x2F;p&gt;
&lt;p&gt;Now we will use the &lt;a class=&quot;&quot; rel=&quot;noopener noreferrer&quot; target=&quot;_blank&quot; href=&quot;https:&#x2F;&#x2F;help.mailstore.com&#x2F;en&#x2F;server&#x2F;Synchronizing_User_Accounts_with_Microsoft_365_(Modern_Authentication)&quot;&gt;Synchronizing User Accounts with Microsoft 365 (Modern Authentication)&lt;&#x2F;a&gt; help page article, but start at the step &lt;em&gt;In the Credential Manager that appears, click on Create…&lt;&#x2F;em&gt;&lt;&#x2F;p&gt;
&lt;p&gt;Start at &lt;em&gt;step 2.1&lt;&#x2F;em&gt;, register the app, create credentials and then publish the credentials:&lt;&#x2F;p&gt;
&lt;ol&gt;
&lt;li&gt;Complete &lt;em&gt;step 2.1 Registering of MailStore Server as App in Azure AD&lt;&#x2F;em&gt;.&lt;&#x2F;li&gt;
&lt;li&gt;Complete &lt;em&gt;step 2.2 Creating Credentials in MailStore Server&lt;&#x2F;em&gt;.&lt;&#x2F;li&gt;
&lt;li&gt;Complete &lt;em&gt;step 2.3 Publishing Credentials in Azure AD&lt;&#x2F;em&gt;.&lt;&#x2F;li&gt;
&lt;li&gt;Skip &lt;em&gt;step 2.4 Configuring App Authentication in Azure AD&lt;&#x2F;em&gt;.&lt;&#x2F;li&gt;
&lt;li&gt;Skip &lt;em&gt;step 2.5 Configuring the Redirect URI in MailStore Server&lt;&#x2F;em&gt;.&lt;&#x2F;li&gt;
&lt;li&gt;Complete &lt;em&gt;2.6 Configuring API Permissions in Azure AD&lt;&#x2F;em&gt;.&lt;&#x2F;li&gt;
&lt;li&gt;Stop at &lt;em&gt;Step 2.7 User Database Synchronization&lt;&#x2F;em&gt; and skip the remainder of the article.&lt;&#x2F;li&gt;
&lt;&#x2F;ol&gt;
&lt;p&gt;We skip steps &lt;em&gt;2.4&lt;&#x2F;em&gt; and &lt;em&gt;2.5&lt;&#x2F;em&gt; as they only apply to synchronizing users with Microsoft 365, but we are intending to stay with Active Directory, but the API permissions are still needed so be sure that you completed step 2.6.&lt;&#x2F;p&gt;
&lt;p&gt;Now that the credentials have been created you can set up Microsoft 365 archiving profiles. For information refer to the &lt;a class=&quot;&quot; rel=&quot;noopener noreferrer&quot; target=&quot;_blank&quot; href=&quot;https:&#x2F;&#x2F;help.mailstore.com&#x2F;en&#x2F;server&#x2F;Archiving_Emails_from_Microsoft_365_(Modern_Authentication)&quot;&gt;Archiving Emails from Microsoft 365 (Modern Authentication)&lt;&#x2F;a&gt; article to set up archiving as normal.&lt;&#x2F;p&gt;
&lt;p&gt;The principles are the same as your existing &quot;Exchange&quot; profiles, so you can probably skip directly to the section that covers &lt;a class=&quot;&quot; rel=&quot;noopener noreferrer&quot; target=&quot;_blank&quot; href=&quot;https:&#x2F;&#x2F;help.mailstore.com&#x2F;en&#x2F;server&#x2F;Archiving_Emails_from_Microsoft_365_(Modern_Authentication)#Archiving_Multiple_Microsoft_365_Mailboxes_Centrally&quot;&gt;Archiving Multiple Microsoft 365 Mailboxes Centrally&lt;&#x2F;a&gt;.&lt;&#x2F;p&gt;
</content>
        
    </entry>
</feed>
