Skip to main content

How to prepare your Microsoft 365 mailboxes for Traffit's move from EWS to Microsoft Graph

Written by Alicja Tomaszewicz

Who is this article for?

Organisations with Microsoft 365 / Exchange Online mailboxes connected to Traffit.

Both actions are performed by your company's Microsoft 365 administrator. The Traffit team has no access to your tenant, so we cannot do this for you. If you are not an administrator, please send them a link to this article.

Why is this needed?

Microsoft is retiring Exchange Web Services (EWS), the interface Traffit currently uses to sync and send mail:

  • from 1 October 2026, EWS is blocked by default,

  • from 1 April 2027, EWS is removed permanently.

Traffit is moving to the newer Microsoft Graph interface. To avoid any interruption to mail, your administrator needs to complete the two steps below.

Step 1: Grant admin consent for the Traffit application

Option A: via link

  1. Sign in to Microsoft 365 as a Global Administrator.

  2. Review the permissions and click Accept.

Option B: via the portal

  1. Open the Microsoft Entra admin center.

  2. Go to Enterprise applications → Traffit → Permissions.

  3. Click Grant admin consent for [your organisation's name].

Which permissions does the consent cover?

Delegated permissions only. Traffit acts solely on behalf of a user who has connected their own mailbox in Traffit.

Permission

Purpose

Mail.ReadWrite, Mail.ReadWrite.Shared

Reading and organising messages in connected mailboxes (own and shared)

Mail.Send, Mail.Send.Shared

Sending messages from Traffit from those mailboxes

User.Read, offline_access

Identifying the signed-in user and renewing the session without re-login

Calendars.ReadWrite, Calendars.ReadWrite.Shared

Calendar sync (own and shared calendars) for users who enable it

EWS.AccessAsUser.All

Current EWS access, needed until the migration completes

Traffit has no access to mailboxes that users have not connected in the application.

Step 2: Add Traffit to the EWS allow list

Until the migration completes, Traffit still uses EWS. From 1 October, Microsoft blocks EWS for any application not on your tenant's allow list (the EWSAllowedAppIDs setting in the Exchange Online organisation configuration).

Add Traffit's application ID to that list:

10621efa-955f-4a27-bf4f-4c1c0b6f37bc

Important:

  • The list is saved as a whole. When adding Traffit, keep any IDs already on the list, otherwise other applications will lose EWS access.

  • Changes can take up to 24 hours to apply, so don't leave it until the last day.

For full configuration details, see Microsoft's documentation: Introducing EWSAllowedAppIDs.

What if Traffit is not added to the list?

After 1 October, mail sync and sending from Traffit may stop working before the Microsoft Graph migration is complete.

Did this answer your question?