Graph settings in Email archive
contentACCESS is using EWS to connect to M365, but recently Microsoft decided to shut down EWS access for M365 (starting in October 2026). The replacement of EWS is Microsoft Graph. contentACCESS now offers the possibility to connect to M365 using Microsoft Graph with some limitations. The Graph access is currently in preview (Beta).
In this section you can find information about the changes and limitations imposed by Microsoft Graph.
Entra ID contentACCESS is using an Entra ID app to access Microsoft Graph. This app is similar to the app used for EWS modern authentication.
If you already have an Entra ID app registered for EWS, this app can be reused by extending the list of permissions. The following Graph permissions (application level) need to be added to the app:
- Mail.ReadWrite
- Mail.Send
- MailboxFolder.ReadWrite.All
- MailboxItem.ImportExport.All
- MailboxItem.Read.All
- MailboxSettings.Read
- Calendars.ReadWrite
- Contacts.ReadWrite
- Tasks.ReadWrite.All
If you do not have the Entra ID app yet, create it based on this documentation: TODO. The app has all the necessary permissions already configured.
Update Exchange connections The switch from EWS to Graph does not happen automatically. Edit each M365 connection manually and change "M365 with EWS" to "M365 with Graph". It can be found in these 2 sections:
- Email archive - System settings
- System - Notifications (if the notification was using EWS instead of SMTP)
In-place archives Microsoft Graph does not yet provide access to in-place archive mailboxes. Until this is not provided by Microsoft, contentACCESS is not able to archive in-place archive mailboxes with Graph.
Public folders Microsoft Graph does not provide access to public folders and most probably will not provide access in the future. Microsoft is pushing customers away from public folders and has no plans to support them further. contentACCESS is not able to archive public folders with Graph.
Restore and recovery of Calendar items Due to a known limitation in Microsoft Graph, it is currently not possible to create a calendar item with full fidelity. The recovery of calendar items is not working at the moment. We are working on a solution or workaround to provide this functionality.
Calendar, contact and task items in mail folders Outlook and EWS allowed to store calendar, contact and task items inside a mail folder. These items are no longer accessible by Graph, Graph can only access calendar items inside a calendar, contacts in contacts folder and tasks in task folders.
Limitations in folder permission synchronization Microsoft Graph has a limited support for folder level permissions. The permissions are accessible, but only the display name of the objects is available. This might lead to limited functionality if 2 users share the same display name. Some shared folders might not show up in contentACCESS portal for certain users.