---
sourceDocument: Xanadu Employee Service Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/xanadu/employee-service-management

 Release :

    - xanadu

ft:locale :

    - en-US

ft:publication_title :

    - Xanadu Employee Service Management

ft:clusterId :

    - emplsm

bundleId :

    - emplsm

workflow :

    - Employee


---

# Configure Microsoft Azure

# Configure Microsoft Azure {#ariaid-title1}

* Release version: Xanadu
* 
* Updated November 28, 2024
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Set up a personal mode authentication with Microsoft Azure to connect Microsoft Exchange Online with Workplace Calendar Synchronization.

## Before you begin

In Personal Authentication mode, a valid delegated user account with an associated email address on Microsoft Exchange Online is required. The user's identity is determined by their email address, which must also be specified in the delegated user email field, where applicable.

Role required: Exchange
administrator

## Procedure

1. Log in to the Microsoft Azure portal.
2. Navigate to Azure ServicesApp registrations.
3. **Optional:** If you don't have an app registration, select New registration.
   1. On the form, enter the Name of the registration.
   2. Select the Supported account types of your choice.
   3. **Optional:** Specify the Redirect URL.  
      Specify the following details:
      1. Select the platform as Web.
      2. Enter the URL in the following format: https://\<instance-Name\>.service-now.com/oauth_redirect.do
      {#configure-azure-personal-auth-mode__ol_gvm_znn_p5b}
   {#configure-azure-personal-auth-mode__substeps_ij5_rnn_p5b}
4. If you already have an app registration, select the app registration.
   1. Navigate to ManageAuthentication.
   2. Navigate to Add a platformWeb applicationsWeb.
   3. On the Configure Web form, fill the fields.  
      {#configure-azure-personal-auth-mode__table_qpy_xfk_v4b__entry__2}

      | Field | Description |
      |-|-|
      | Redirect URL | Enter a URL in the format: https://\[instance\].service-now.com/oauth_redirect.do |
      | Implicit grant | Check Access tokens, and ID tokens |
      [Table 1. Configure web form]

      {#configure-azure-personal-auth-mode__table_qpy_xfk_v4b}
   4. Select Configure.
   {#configure-azure-personal-auth-mode__substeps_h15_hkk_v4b}
5. Add a client secret.
   1. Navigate to ManageCertificates and secrets.
   2. In the Description field, enter a short description about the secret.
   3. Under Expires, select an expiry.
   4. Select Add.
   5. After adding, in the Client secrets section, copy the value by selecting Copy to clipboard.
   {#configure-azure-personal-auth-mode__substeps_avx_rss_1yb}
6. Add a permission.
   1. Navigate to ManageAPI permissions.
   2. Select Add a permission.
   3. Select Microsoft Graph.
   4. Select Delegated permissions.
   5. Under Calendars, select Calendars.ReadWrite, Calendars.ReadWrite.Shared, and Offline_access.
   6. Select Add permissions.
   7. **Optional:** On the Configured permissions screen, select Grant admin consent for ServiceNow.
   {#configure-azure-personal-auth-mode__substeps_bvx_rss_1yb}

## Result

The Microsoft Exchange Online is set up with Microsoft Azure.

## What to do next

[Configure resource rooms in Microsoft Exchange Online](https://servicenow-prod.fluidtopics.net/UCAPLj1RsEsN27jc4Sl7KA "Specify your delegated user email in the Microsoft portal to access the resource calendar.")

*[\>]: and then


