admin
6547 TopicsGmail to Microsoft 365 Migration Issue Open for 7+ Days – Seeking Guidance or Escalation Path
I’m facing an issue with a Gmail to Microsoft 365 migration that has been open for more than 7 days, and I’m looking for guidance or an escalation path from the community. Scenario: Migration type: Gmail to Microsoft 365 Issue started: April 22 Current status: Stuck with no clear resolution What’s happening: The support ticket has been active since April 22. However, the updates I’ve been receiving are generic responses such as “we are working on it” and “this has been prioritized.” Despite multiple follow-ups, there has been: No clear root cause identified No ETA provided No technical breakdown of the issue I also requested a callback from the assigned manager and technical lead to better understand the situation, but the communication has remained email-only with repeated status updates. What I’m looking for: Has anyone faced similar issues during Gmail → Microsoft 365 migrations? Are there known blockers or common causes that could lead to this kind of delay? What is the recommended escalation path when support is unable to provide technical clarity or ETA? Any insights, workarounds, or guidance would be highly appreciated. Thank you in advance.299Views1like2CommentsHow to Find Inactive (Stale) User Accounts
Inactive accounts can soak up a lot of paid-for but unused product licenses. With increases for Microsoft 365 licenses due to come into effect from 1 July 2026, it’s time to find and remove unused licenses from inactive user accounts. We discuss two approaches by using the Microsoft 365 Licensing Report or a PowerShell script that assesses inactivity based on sign-in dates and refresh token baselines. https://office365itpros.com/2026/06/09/find-inactive-accounts/85Views0likes1CommentSales Agent for Copilot Chat - DLP Policy
Setting the Sales Agent up for Salesforce in Copilot Chat. This sets up an environment called "msdyn_viva". Does anyone know what the minimum DLP connectors are required to make this work, other than Salesforce? Not finding any documentation on this. https://learn.microsoft.com/en-us/microsoft-sales-copilot/landingCopilot for Sales not prompting to add opportunity from email in outlook
Hi, We have Microsoft Copilot for Sales connected to Salesforce CRM. When an email is received from a sender who does not exist in Salesforce, Copilot correctly prompts us to create a new contact. After the contact is created and associated with an account, I can manually create or edit opportunity records without issue. I have verified the Salesforce configuration, permissions, and access assigned to the CopilotForSalesIntegrationProfile used by the Sales Agent. I have also confirmed that all required opportunity fields are configured in the Copilot for Sales forms. The issue is that Copilot is not prompting users to create an opportunity based on incoming emails. My understanding is that Copilot for Sales should be able to identify opportunity-related intent in an email and prompt for opportunity creation, with relevant information from the email prepopulated into the opportunity record. Has anyone experienced this behavior and found a resolution? Any guidance or recommendations would be appreciated. Thank you.license to access Planner Premium from Power Apps
We want to create a Power Apps that connect to those main sources:- 1) SharePoint 2) Premium Planner now i know that connects Power Apps to Premium Planner will make the Power Apps as premium app, and users will need premium power apps license to access it. and also accessing Premium Planner will need atleast Planner Plan1. so what is the minimum license for those 3 groups of users:- 1) normal users will be accessing SharePoint lists only through the Power Apps 2) Admin users will be accessing SharePoint lists and Premium Planner through the Power Apps + Premium Planner through the Premium Planner UI. 3) Senior user will be accessing SharePoint lists and Premium Planner through the Power Apps only. does Planner Plan1 is enough for Senior user? and does Power Apps Premium is enough for admins? Thanks36Views0likes1CommentHas anyone migrated from one Google Workspace to another after a company merger?
Hi all, Our company recently went through a merger and we now have two separate Google Workspace accounts that need to be consolidated into one. I need to move everything across, emails, contacts, calendars and tasks, for all users without anything getting lost in the process. Honestly not sure where to begin. Google's native tools seem limited for something like this and I don't want to start without a solid plan. Has anyone gone through a similar consolidation? How did you handle it and is there anything you wish you had known before starting?67Views0likes2CommentsApple Mail EWS sync intermittent after EwsEnabled=True + AppID allow list
We're a small Microsoft 365 Business tenant (Exchange Online Plan 1/2 mix). One user's Apple Mail (macOS, Exchange/EWS account) intermittently stops syncing new mail — Connection Doctor shows a healthy green "Connection and login to server succeeded," but Get New Mail/manual fetch and forced Sync All Accounts return nothing new, while the same mail is already present via ActiveSync on the same user's iPhone/iPad. Symptoms recur every 1–3 days after temporarily resolving. Troubleshooting completed so far: - Confirmed autodiscover/External URL correctly resolves to outlook.office365.com/EWS/Exchange.asmx - Confirmed EWS enabled at the mailbox level (Manage email apps in admin center) - Found EwsEnabled was blank/null at the org level — set to $true via Set-OrganizationConfig - Configured EwsAllowedAppIDs to include Apple's app ID (f8d98a96-0999-43f5-8af3-69971c7bb423, "Apple Internet Accounts") - Fully removed and re-added the Mac Mail account after the above org-level change - Restarted the Mac, tried DNS changes (8.8.8.8/8.8.4.4), ruled out router-level filtering - Verified no antivirus/VPN/security software on this Mac's network Despite all this, the issue persists intermittently. Notably, a second mailbox on the same tenant, used with Apple Mail on a different Mac (different macOS version, different physical location/network), does NOT experience this issue — so it doesn't appear to be a blanket tenant-wide EWS disruption. Given Apple Mail's continued reliance on EWS ahead of the October 2026 phased disablement, and Microsoft's acknowledgment that Apple Mail for Mac is a heavy EWS consumer they're working with Apple to migrate to Graph, I'm wondering: 1. Could this be related to the ongoing "scream test" EWS disruption testing Microsoft has mentioned, and if so, is there a way to check whether a specific mailbox has been included in that testing? 2. Any known differences in EWS session/connection handling between macOS versions that could explain one Mac being affected and not the other? 3. Anything else worth checking tenant-side (throttling policies, CAS mailbox settings, conditional access rules) that could apply per-mailbox rather than tenant-wide? Happy to provide EWS usage report data or run any diagnostic commands if it helps others hitting the same thing before October.58Views0likes1CommentOutlook.de DKIM and DMARC records broken
Outbound mail from outlook.de carries a DKIM-Signature with d=OUTLOOK.DE; s=selector1, but the corresponding DNS TXT record at selector1._domainkey.outlook.de does not exist. This causes receiving servers to report dkim=permerror (no key for signature). To reproduce: Send a mail from any @outlook.de account Check the DKIM-Signature header — it references selector1 Run: dig TXT selector1._domainkey.outlook.de — no record returned The domain outlook.de also has no DMARC record published (dmarc=none). Some header information: Received: by 2002:a05:6a11:e41c:b0:73b:6833:703f with SMTP id em28csp1732536pxc; Tue, 21 Jul 2026 07:23:10 -0700 (PDT) [...] ARC-Authentication-Results: i=2; mx.google.com; dkim=permerror (no key for signature) header.i=@OUTLOOK.DE header.s=selector1 header.b=mWWTJtqO; arc=pass (i=1); spf=pass (google.com: domain of email address removed for privacy reasons designates 2a01:111:f403:d20f::3 as permitted sender) [...] I leave out DNS this time as the discussion was marked as spam, but you can easily check it yourself: dig TXT selector1._domainkey.outlook.de and dig TXT _dmarc.outlook.de return no entries as all. So obviously the DNS records are not published. This leads to bad email reputation - so emails are either in SPAM folders or get rejected completely. Can someone from MS look into this and fix it. This is at least the case since June 2026 - see also https://borncity.com/blog/2026/07/02/patzt-microsoft-bei-dkim-fuer-outlook-de/ (which is in German unfortunately) - but that is the exact issue.65Views0likes3CommentsHow can specific users be exempted from a tenant-scoped Microsoft 365 Apps Policy?
Hello, I am looking for guidance regarding Microsoft 365 Apps Cloud Policy Service behavior and policy precedence. Current configuration: In Microsoft 365 Apps Admin Center → Policy Management (config.office.com), we have the following policies: Policy 1 Name: Shorten Meeting Global Scope: Tenant Priority: 0 Configured settings: Shorten appointments and meetings = Enabled Reduce the end time of short appointments and meetings = 5 minutes Reduce the end time of long appointments and meetings = 10 minutes Policy 2 Name: Test Scope: User (Security Group) Priority: 1 Assigned only to a dedicated test group Relevant settings configured as Not Configured Observed client behavior: On corporate-managed devices, affected users receive the following registry values: HKCU\Software\Policies\Microsoft\Cloud\Office\16.0\Outlook\Options\Calendar shortenevents = End_Early endearlyshort = 5 endearlylong = 10 The Outlook option: File > Options > Calendar > Shorten appointments and meetings is greyed out. Additional validation: Using the same Microsoft 365 account on an external non-corporate device: The above registry path is not present. The Outlook option is editable. Testing performed: A user-scoped Cloud Policy was created and assigned to a dedicated security group. For the "Shorten appointments and meetings" setting, only the following options are available: Enabled Not Configured There is no Disabled option. but the Tenant policy continued to apply and the Outlook option remained locked. Questions Is there a supported way to exempt specific users from a tenant-scoped Microsoft 365 Apps Cloud Policy when the setting only supports "Enabled" and "Not Configured" and does not provide a "Disabled" option? Does Not Configured in a User-scoped policy allow evaluation to continue to the lower-priority Tenant policy? If policy precedence is changed so that: Test Policy = Priority 0 Tenant Policy = Priority 1 would the User policy potentially suppress the Tenant setting? Is there a supported way in Microsoft 365 Apps Cloud Policy Service to provide exceptions for specific users while keeping the Tenant policy as the organizational default? Has anyone successfully implemented an exclusion or override scenario for the "Shorten appointments and meetings" setting? Any guidance or documentation references would be greatly appreciated. Thank you.How to target Azure VPN (Microsoft-Registered) app with Conditional Access Policies?
I have an Azure Point-to-Site VPN Gateway configured using the Microsoft-registered Azure VPN Client App ID (Audience value: c632b3df-fb67-4d84-bdcf-b95ad541b5c8). Everything is working correctly for our users. The issue I am having is that anyone with an Entra account can connect to the VPN and I want to restrict this with a blocking Conditional access policy. I do not want to create a custom app registration, because then I will have to change the 'audience' value on the app gateway and all user's will need to modify their VPN clients. The problem is I need to target the Microsoft-registered Azure VPN app in a Conditional Access policy but it does not appear in my Enterprise Applications list or in the CA app picker when searching. My questions: Why does the Microsoft-registered app not automatically create a service principal in my tenant the way other Microsoft apps do? Is there a supported way to make it appear in the CA app picker without creating a custom app registration or changing the gateway Audience value? Has anyone successfully targeted c632b3df-fb67-4d84-bdcf-b95ad541b5c8 in a CA policy while keeping it as the gateway Audience value? Thanks for the assistance here122Views0likes2Comments