The following information is required to set up the M365 (Exchange) Connector for your Reserve + M365 Integration.
To use OAuth, an application must have an application ID issued by Azure/Entra. It is assumed that the application is a console application, so you need to register the application as a public client with Azure/Entra.
Required Information During App Registration
These are the required information from Azure/Entra and must be provided to the Tango Reserve team to set up the Reserve connector for M365.
- Client ID
- Client Secret Value
- Tenant ID
A working session with our technical engineer and your technical resource is recommended to get these values from Azure/Entra .
When setting up this configuration, do not use an existing Client ID. Also avoid having any redirect URLs associated with this app registration.
Steps:
1. Open a browser and navigate to the MS Azure/Entra admin center and log in using a personal account (aka: Microsoft Account) or Work or School Account
2. Browse to Identity > Applications > App registrations.
3. Select New registration. On the Register an application page, set the values as follows.
- Enter a meaningful name for the Connector app (ex: TangoReserve-Connector)
- Set Supported account types to Accounts in this organizational directory only (Tenant only - Single tenant).
- Register the application as a public client.
4. Choose Register. On the next page, copy the value of the Application (client) ID and save it, you will need it later.
5. Select API permissions in the left-hand navigation under Manage and click Add a permission. For more information about the permissions, check out this article.
6. Select Microsoft Graph and add the appropriate Application and/or Delegated Permissions. The permissions required will be based on the set-up option you choose for your Connector - which is either: Application Access (Default Configuration) or Direct Access.
|
Permissions Required
|
Option 1: Application Access (Default) |
Option 2: Direct Access
|
| Calendars.ReadWrite | Application – Yes |
Application – Yes Delegated – Yes |
| Place.Read.All | Application – Yes | Delegated - Yes |
| User.Read.All | Application – Yes | N/A |
| Mail.Send | Application - Yes | N/A |
| Calendars.ReadWrite.Shared | N/A | Delegated – Yes |
7. Grant admin consent on all permissions.
8. Select Certificates & Secrets in the left-hand navigation under Manage.
9. Select New client secret, enter a short description and select Add.
10. Copy the Value of the newly added client secret and save it, you will need it later. Also, keep track of the expiration date of your secret value in the event that your secret value. An expired value will cause the connector to fail.
11. The Tenant id can be found in the Azure/Entra Admin Center. You will see “Tenant ID” under the Tenant information section. Take down this information.
Additional Information:
What setting should be used for Redirect URI?
The Redirect URI should be registered as Public Client/native (https://docs.microsoft.com/en-us/exchange/client-developer/exchange-web-services/how-to-authenticate-an-ews-application-by-using-oauth).
Was this article helpful?
That’s Great!
Thank you for your feedback
Sorry! We couldn't be helpful
Thank you for your feedback
Feedback sent
We appreciate your effort and will try to fix the article