Skip to main content
Resources & navigation
Business settings & access

Connect Microsoft 365 Business Email

Last updated 2026-08-073 min read

Connect a Microsoft 365 business mailbox, respect organization approval, and verify the sender with a test.

On this page

Microsoft 365 can be connected so supported Ellich operational messages use the Microsoft business mailbox selected by the organization. The connection opens Microsoft's sign-in and permission page; Ellich does not request the mailbox's normal password. Availability may be limited to organizations participating in the controlled email field pilot.

Choose where the sender applies

Open Admin / Communications / Email. Choose the scope before selecting Connect Microsoft:

  • Company default applies to locations that do not have a location-specific sender.
  • This location applies only to the current location and overrides the company default there.

Check the company and location names shown on the page before continuing. If Connect Microsoft is disabled, the Microsoft connection is not configured for that environment. Keep the approved existing email setup in place and do not send passwords or sign-in screenshots to support.

Sign in with the correct Microsoft account

Select Connect Microsoft, sign in on Microsoft's page, and review the permission to send mail. This secure provider authorization is sometimes called OAuth and does not use an app password. Choose the business mailbox that should appear as the connected sender. Do not assume that signing in as an administrator automatically connects a shared mailbox or grants send-as rights for another address.

Some Microsoft 365 organizations require an administrator to approve connected applications. If Microsoft shows an approval-required message, ask the organization's Microsoft 365 administrator to review it. Do not bypass the policy with a personal Outlook account.

After returning to Ellich, confirm the sender and reply-to address. Customer replies go to the reply-to inbox, so it must be monitored. Connecting Microsoft does not change the domain's MX records or nameservers. Microsoft 365 and domain administrators remain responsible for SPF, DKIM, DMARC, mailbox licensing, and send-as policy.

Complete the required test

Enter an approved Test recipient, then select Send test beside the connection. Ellich does not use a newly connected sender until the test succeeds. Accepted means Microsoft received the message request; it is not confirmation that the recipient's inbox received it. Check the inbox and junk folder, and review Recent email activity for any later delivery status that is available.

Pilot controls may allow only named organizations and test recipients. If Ellich reports that a recipient is not approved for the pilot, do not substitute a customer address.

Disconnect and remove provider access

Select Disconnect in Ellich when the connection should stop. Then review Microsoft account or Entra enterprise-application access and remove the authorization if the organization's security policy requires it. Verify the effective sender afterward: the location may fall back to a separate company default, or it may show no connected sender.

For compatibility controls, domain details, and recipient blocks, see Configure and test outbound email. Never include passwords, access codes, approval links, or mailbox contents in a support request.