--- title: "Microsoft Office 365" slug: "microsoft-office-365" updated: 2024-09-23T02:56:33Z published: 2024-09-23T02:56:33Z canonical: "docs.processmaker.com/microsoft-office-365" --- > ## Documentation Index > Fetch the complete documentation index at: https://docs.processmaker.com/llms.txt > Use this file to discover all available pages before exploring further. # Microsoft Office 365 ## Microsoft Office 365 Driver Settings Microsoft Office 365 is one of the most widely use email services in the world. Configure an email server to authenticate with Office 365 Simple Mail Transfer Protocol (SMTP) from which to send emails. ## Configure Office 365 Mailer Driver Settings **Permissions** Your user account or group membership must have the "Settings: Update Settings" permission to edit email server settings unless your user account has the **Make this user a Super Admin** setting selected. See the [Settings](/v1/docs/permission-descriptions-for-users-and-groups#settings) permissions or ask your Administrator for assistance. Refer to the following sections in this order to configure an email server for Office 365 SMTP authentication: 1. [Enable Office 365 SMTP OAuth in email server settings](/v1/docs/email-default-settings#enable-office-365-smtp-oauth-in-email-server-settings). 2. [Enable SMTP Authentication in Microsoft 365](/v1/docs/email-default-settings#enable-smtp-authentication-for-an-email-address-in-microsoft-365-admin-center). 3. [Create an Azure Active Directory application](/v1/docs/email-default-settings#create-an-azure-active-directory-application). 4. [Authorize the Azure Active Directory application on the email server](/v1/docs/email-default-settings#authorize-the-azure-active-directory-application-on-the-email-server). ### Enable Office 365 SMTP OAuth in Email Server Settings Follow these steps to enable SMTP authentication for the Office 365 email server settings: 1. [Create a new email server configuration](/v1/docs/email-default-settings#create-a-new-email-server-configuration). Email server settings display. The settings for the SMTP mailer driver display. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/26fd9e4a-88fd-4663-af2e-ae8231e63250.png) 2. Click the **SMTP Authentication Method** setting. The **SMTP Authentication Method** screen displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/99cb9a93-684d-448b-9d39-99665d9560cd.png) 3. Select the **office365** option, and then click **Save**. The settings for the Office 365 email server display. Until providing the Office 365 client ID and Office 365 client secret, the label **Not Authorized** displays in the **SMTP Authentication Method** setting. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/f6f24aa5-17e7-491a-9f8c-f9f817694a9d.png) 4. Click the **Edit** ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/b3630a8e-2828-4a12-a117-278a547a47b7.png) icon for the **Use Secure Connection** setting. The **Use secure connection** screen displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/fd42a88c-a55b-40ef-834b-c24b81f399bf.png) Select the **tls** option if it is not currently selected. Click **Save** if you changed this setting. 5. Click the **Edit** ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/b3630a8e-2828-4a12-a117-278a547a47b7.png) icon for the **Server Port** setting. The **Server Port** screen displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/89c0bad7-2950-4275-b477-d78f4368c94a.png) 6. Enter `587`, and then click **Save**. 7. Click the **Edit** ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/b3630a8e-2828-4a12-a117-278a547a47b7.png) icon for the **Server Host** setting. The **Server Host** screen displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/27921f05-b2f0-400e-9185-6d1702a1960b.png) 8. Enter `smtp.office365.com`, and then click **Save**. 9. From the **Office 365 Redirect URI** setting, copy the redirect URI for creating the Office 365 SMTP OAuth integration. This redirect URI is automatically configured for this email server after selecting the **SMTP Authentication Method** setting. Microsoft calls back to this URL after Microsoft authenticates a valid Azure Active Directory (Azure AD) application in ProcessMaker. 10. [Enable SMTP authentication for an email address in Microsoft 365 Admin Center](/v1/docs/email-default-settings#enable-smtp-authentication-for-an-email-address-in-microsoft-365-admin-center). ### Enable SMTP Authentication for an email address in Microsoft 365 Admin Center SMTP authentication must be enabled in Microsoft 365 Admin Center so the Microsoft email address configured in the email server can send emails. Otherwise, Microsoft 365 will block requests to the SMTP server. Follow these steps to enable SMTP authentication in Microsoft 365 Admin Center: 1. [Ensure that SMTP authentication is enabled for the Office 365 email server](/v1/docs/email-default-settings#enable-office-365-smtp-oauth-in-email-server-settings). 2. Log on to [Microsoft 365 Admin Center](https://portal.office.com/AdminPortal/). 3. From the menu icon in the upper-left, select **Users**, then the **Active users** option. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/26e07622-44f0-4a20-82ef-e6dd5c541ef5.png) The list of active users in your Microsoft 365 account displays. 4. Select the active user from whom to send emails from the email server. Details about that user display in the right-side panel. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/41103d31-888e-48a2-8fb9-1d9deaf1f186.png) 5. Select the **Mail** tab for within that user's information. 6. From the **Email apps** column, select the **Manage email apps** link. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/9d516862-cb7e-428b-875d-4f9824a41e62.png) The **Manage email apps** screen displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/f3b1eaaf-4497-414c-aabd-25ba8a301bd4.png) 7. Select the **Authenticated SMTP** option if it is not already selected. Click the **Save changes** button if you enabled this option. 8. [Create a Microsoft Azure Active Directory application](/v1/docs/email-default-settings#create-an-azure-active-directory-azure-ad-application). ### Create an Azure Active Directory Application Follow these steps to create a Microsoft Azure Active Directory (Azure AD) application: 1. Ensure the following: - [An email server in ProcessMaker settings is configured for Microsoft Office 365 OAuth integration](/v1/docs/email-default-settings#enable-office-365-smtp-oauth-in-email-server-settings). - [The Microsoft email address with which to send emails from the email server is configured to use an authenticated SMTP email app](/v1/docs/email-default-settings#enable-smtp-authentication-for-an-email-address-in-microsoft-365-admin-center). 2. Log on the [Microsoft Azure Portal](https://portal.azure.com/) with the Microsoft email address configured on Microsoft Office 365 Admin Center. 3. Search for, and then select the **App registrations** service. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/ac88dc6b-1ac0-493a-bda9-89ea8dee7a34.png) The **App registrations** page displays. 4. Below the **App registrations** page title, click the **+New registration** button. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/cf839ea9-b2d8-4d8a-8f05-f53b12614151.png) The **Register an application** page displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/efc8ee9b-6240-4d88-a17e-1506103d1916.png) 5. In the **Name** setting, enter a name for this application. This is a required setting. 6. From the **Supported account types** setting, select which account type this application will support for your organization. If unsure, keep the default **Accounts in this organizational directory only (FormShare only - Single tenant)** option. 7. From the **Redirect URI (optional)** setting, do the following: 1. From the **Select a platform** setting, select the **Web** option. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/913440a0-b2bf-49bf-9128-80e6350e5370.png) 2. To the right of the **Select a platform** setting, enter the Office 365 redirect URI copied from your ProcessMaker instance. 8. Click the **Register** button. The Azure platform creates the Azure AD application, and then displays information about the application. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/8683d23c-9b0c-42c7-8996-d1b4e7ba31b2.png) 9. From the **Essentials** section, click the **Copy to Clipboard** icon to copy beside the **Application (Client) ID**, and then save it for later configuration in the Office 365 email server. 10. From the **Essentials** section, click the **Copy to Clipboard** icon to copy beside the **Directory (Tenant) ID**, and then save it for later configuration in the Office 365 email server. 11. From the **Manage** left-side menu, select the **Certificates & secrets** option. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/fe5859ec-d345-453f-89c0-898b05d72f3c.png) The **Certificates & secrets** page for this Azure AD application displays. 12. Click the **+New client secret** button. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/24ae959a-0055-4dab-850e-a426a536bae6.png) The **Add a client secret** screen displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/db1460a7-f4d0-4fa8-83e7-fb430437ae36.png) 13. In the **Description** setting, enter a description for how this client secret will be used. 14. From the **Expires** setting, select at which date this client secret expires. After this date, a new client secret should be generated and updated in the PM4 instance 30 days before it is set to expire. 15. Click **Add**. A new client secret generates. 16. Click the **Copy to Clipboard** icon to copy the client secret value, in the middle column, and then save it for later configuration in the Office 365 email server. Ensure to copy this client secret before refreshing or leaving this page. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/a5db0a69-59e2-42e6-b16f-bf344cc7ebed.png) 17. [Authorize the Azure Active Directory application on the email server](/v1/docs/email-default-settings#authorize-the-azure-active-directory-application-on-the-email-server). ### Authorize the Azure Active Directory Application on the Email Server Follow these steps to authorize the Office 365 account for the Office 365 SMTP OAuth integration: 1. Ensure the following: - [An email server in ProcessMaker settings is configured for Microsoft Office 365 SMTP OAuth integration](/v1/docs/email-default-settings#enable-office-365-smtp-oauth-in-email-server-settings). - [The Microsoft email address with which to send emails from the email server is configured to use an authenticated SMTP email app](/v1/docs/email-default-settings#enable-smtp-authentication-for-an-email-address-in-microsoft-365-admin-center). - [An Azure Active Directory (Azure AD) application has been created with a validly dated client secret](/v1/docs/email-default-settings#create-an-azure-active-directory-application). 2. In the ProcessMaker settings, access the email server configured for the Office 365 SMTP OAuth integration. 3. Click the **Edit** ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/b3630a8e-2828-4a12-a117-278a547a47b7.png) icon for the **Office 365 Tenant ID** setting. The **Office 365 Tenant ID** screen displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/dbe14782-ed5f-4864-a407-1ae28125849c.png) Enter the Office 365 tenant ID copied from the Azure AD application. 4. Click the **Edit** ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/b3630a8e-2828-4a12-a117-278a547a47b7.png) icon for the **Office 365 Client ID** setting. The **Office 365 Client ID** screen displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/22a3294f-d4cb-4bcd-8551-88a24a25b57b.png) Enter the Office 365 client ID copied from the Azure AD application. 5. Click the **Edit** ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/b3630a8e-2828-4a12-a117-278a547a47b7.png) icon for the **Office 365 Client Secret** setting. The **Office 365 Client Secret** screen displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/7ba65c4e-0daf-434e-92a6-64579df342de.png) Enter the Office 365 client secret copied from the Azure AD application. 6. Click the **Authorize Account** button at the top of the email server settings. The **Pick an account** screen displays. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/0bd0dec7-e69f-4d88-a4b9-eea44749be14.png) 7. Select the email address configured to send emails from the email server. 8. Select the **Consent on behalf of your organization** checkbox if the **Permissions requested** screen displays, and then click the **Accept** button. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/4cca1792-8438-4183-b8d5-31cb657ec2d1.png) 9. If the Office 365 SMTP OAuth integration is configured correctly on your email server settings, then the email server settings display again, and the **SMTP Authentication Method** setting indicates that Microsoft authorized this email server to use the Azure AD app. ![](https://cdn.document360.io/2d311614-fcb7-4424-8b4c-d4d3091eebeb/Images/Documentation/c1ba30a1-91cf-4833-8d9f-25d2c4cffde5.png) 10. [Optionally, send a test email to ensure that the email server configuration functions correctly](/v1/docs/email-default-settings#send-a-test-email-using-an-email-server-configuration).