We're configuring ServiceDesk Plus Cloud (OnDemand) to connect to our Microsoft 365 tenant for incoming/outgoing mail (Outlook/Office 365 option under Mail Server Settings). Based on ManageEngine's own OAuth documentation for on-prem/MSP editions, we expected to need to:
However, in SDP Cloud, the connection flow only prompted us to sign in with the mailbox account and consent — no fields for Client ID, Tenant ID, or Client Secret appeared.
Our security team needs to understand this before approving the integration, specifically:
Mail.ReadWrite, Mail.Send.Shared, offline_access, but want to confirm this is accurate for the Cloud edition's flow specifically)?This is for a security review ahead of enabling mail integration, so any pointers to documentation on the underlying app registration (App ID, permissions manifest, or a security/architecture whitepaper) would be very helpful.
I