Register the Exchange Online app with Azure Active Directory (AD).
When you finish registering the app, record the Application ID and Directory ID. When you finish creating the client secret, record it. You will need to enter these values when you configure your environment.
To improve performance and to minimize throttling, you can register multiple apps. For example, for an Exchange Online app that has 2,500 mailboxes, register 5 apps. Every time an additional 1,000 mailboxes are added, register 1 additional app.
Note
Disclaimer: This procedure is performed using the Azure Active Directory (Azure AD) Web application. The Azure AD application is subject to change without notice. Consult Microsoft documentation, for example "Azure Active Directory Documentation" (https://docs.microsoft.com/en-us/azure/active-directory/).
Log On to the Azure Portal as the Global Administrator
-
Log on to the Azure portal (https://portal.azure.com/) using your global administrator account.
-
Go to Azure Active Directory.
Register the Azure App
-
In the navigation pane, click App registrations.
-
Click New registration.
-
In the Name box, enter a name for the app.
-
Under Supported account types, select the accounts that you want to give access to the app.
-
If you want to verify the status of the app and to authorize the app from the Command Center, under Redirect URI, enter the Command Center URL.
For example, enter https://Command_Center_name.domainname.com/commandcenter.
-
Click Register.
-
Copy and paste the following values in a file or other document that you can access later:
-
Application ID
-
Directory ID
You will enter these values in the Command Center when you create the Exchange Online app.
-
Request and Grant Permissions for Azure APIs
-
In the navigation pane, click API permissions.
-
Click Add a permission.
-
Click Microsoft Graph.
-
Click Application permissions.
-
Select the following permissions:
-
Directory: Directory.Read.All
-
Group: Group.ReadWrite.All
-
-
Click Add permissions.
-
Click Add a permission.
-
Click APIs my organization uses.
-
On the search bar, type Office 365 Exchange Online.
-
Select Office 365 Exchange Online, and then click Application permissions.
-
Select full_access_as_app.
-
Click Add permissions.
-
Click Grant admin consent for tenant_name.
Create a Client Secret for the Azure App
-
In the navigation pane, click Certificates & secrets.
-
Click New client secret.
-
Enter a description, and then select when you want the secret to expire.
-
Click Add.
-
Copy and paste the client secret value in a file or other document that you can access later.
You will enter this value in the Command Center when you configure your environment.