ExSign M365 Organization Configurations

Prior to the following the instructions mentioned in this knowledge based article, make sure the instructions given in this article have been followed: https://portal.hostingcontroller.com/kb/a3458/exsign-connectors-for-o365.aspx

This article includes instructions that help to configure ExSign 365 Agent to connect with Exchange Online (M365).

Steps required for connecting the ExSign M365 Agent: The following are the steps to connect from ExSign 365 Agent machine to M365: 

  • Log in to the Azure Portal from the URL: https://portal.azure.com/ and then click on Microsoft Entra ID, as shown in the below screenshot. 
 
 
  • Register application in Azure Portal by navigating to the path:  App registrations >> New registation as shown below:

A screenshot of a computer Description automatically generated
 
 
  • Under "Supported account types", select Accounts in this organizational directory only (Trycatch only - Single tenant)”.
 
 
  • After clicking on the Register button, the below screen will be shown:

 
Then, in front of “Client credentials”, click on "Add a certificate or secret" and then add a secret.
 
A screenshot of a computer Description automatically generated
 
  • Now under Certificares & secrets, click on "New client secret".
 
A screenshot of a computer Description automatically generated

After clicking on "New client secret", a dialog box titled "Add a client secret", will appear as shown below. Specify the values for the description and expiry of the secret, and then click on Add button which will add the "client secret" with its expiry.
 
 
Record the secret's value for use in your client application code. This secret value is never displayed again after you leave this page.
 
 Then under "App Registration", navigate to “API permissions” and select "Add a permission".

Then, from: Microsoft APIs >> Commonly used Microsoft APIs section, click Microsoft Graph as shown below.

 
  • After it, click on "Application permissions".

 
  • And then add these three API permissions.
    • User.Read.All
    • Domain.Read.All
    • Group.Read.All
To set API Permissions for "User.Read.All", specify "User.Read.All" in the search filter as shown below.

To set API Permissions for "Group.Read.All", specify "Group.Read.All" in the search filter as shown below.


To set API Permissions for "Domain.Read.All", specify "Domain.Read.All" in the search filter as shown below.
 
 
Now select “Grant admin consent for Trycatch”.

 
Grant admin consent confirmation selects “Yes”.

 
 
Then provide the following details in the “ExSign Agent for M365”.
Then connect “M365 connectivity” will be succeeded.
 
A screenshot of a computer Description automatically generated