category: Email provider: Microsoft sectionorder: - Connect - Collect commonfields: id: MicrosoftGraphMail version: -1 configuration: - defaultvalue: https://graph.microsoft.com display: Server URL name: url required: true type: 0 section: Connect - displaypassword: Application ID or Client ID additionalinfo: See the Help tab. hiddenusername: true name: creds_auth_id type: 9 section: Connect required: false - displaypassword: Token or Tenant ID additionalinfo: See the Help tab. hiddenusername: true name: creds_tenant_id type: 9 section: Connect required: false - displaypassword: Key or Client Secret additionalinfo: See the Help tab. name: credentials type: 9 section: Connect hiddenusername: true required: false - display: Certificate Thumbprint name: creds_certificate type: 9 section: Connect displaypassword: Private Key required: false - additionalinfo: Used for certificate authentication. As appears in the "Certificates & secrets" page of the app. display: Certificate Thumbprint name: certificate_thumbprint type: 4 section: Connect hidden: true required: false - display: Private Key name: private_key type: 14 section: Connect additionalinfo: Used for certificate authentication. The private key of the registered certificate. hidden: true required: false - additionalinfo: Select this checkbox if you are using a self-deployed Azure application. display: Use a self deployed Azure application name: self_deployed type: 8 required: false section: Connect advanced: false - additionalinfo: Relevant only if the integration is running on Azure VM. If selected, authenticates based on the value provided for the Azure Managed Identities Client ID field. If no value is provided for the Azure Managed Identities Client ID field, authenticates based on the System Assigned Managed Identity. For additional information, see the Help tab. name: use_managed_identities type: 8 required: false display: Use Azure Managed Identities section: Connect - name: managed_identities_client_id type: 9 section: Connect required: false additionalinfo: The Managed Identities client ID for authentication - relevant only if the integration is running on Azure VM. displaypassword: Azure Managed Identities Client ID hiddenusername: true - display: Fetch incidents name: isFetch type: 8 section: Collect required: false supportedModules: - agentix - xsiam - display: Email address from which to fetch incidents additionalinfo: For example, "example@mail.com" name: mailbox_to_fetch type: 0 section: Collect required: false - additionalinfo: Supports folder ID and sub-folders, for example Inbox/Phishing. defaultvalue: 'Inbox' display: Name of the folder or sub-folder from which to fetch incidents name: folder_to_fetch type: 0 section: Collect required: false - defaultvalue: '15 minutes' display: First fetch timestamp name: first_fetch type: 0 section: Collect additionalinfo: