Hello Veeam Forum
I've already tried contacting Veeam Support, but unfortunately they couldn't provide me with any further information.
Maybe you can help. Thanks
We manage multiple enterprise customers using Veeam Backup for Microsoft 365 (v8.5.x) and are currently configuring the required Microsoft Graph permissions in the context of the EWS deprecation (October 1, 2026).
Our customers must formally justify every Graph permission to their CISO and data protection authority. Two permissions are being questioned for pure backup operations -> https://helpcenter.veeam.com/docs/vbo36 ... html?ver=8
1. MailboxFolder.ReadWrite.All — Why is write access needed for backup? Would MailboxFolder.Read.All not be sufficient?
2. MailboxItem.ImportExport.All — Why is the import capability needed for backup? Would MailboxItem.Export.All not be sufficient?
We kindly ask for a detailed technical explanation for both permissions, and suggest that Veeam adds these justifications directly to the official documentation.
Thxs
Sven
-
sven.madai@switch.ch
- Service Provider
- Posts: 2
- Liked: 1 time
- Joined: Jan 17, 2024 2:38 pm
- Full Name: STS
- Contact:
-
Polina
- Veeam Software
- Posts: 4133
- Liked: 1065 times
- Joined: Oct 21, 2011 11:22 am
- Full Name: Polina Vasileva
- Contact:
Re: MailboxFolder.ReadWrite.All & MailboxItem.ImportExport.All — Detailed technical justification required for backup op
Hi Sven,
During backup write and import are not used, and technically only read and export abilities are used. ReadWrite and ImportExport permissions are requested to cover both backup and restore scenarios.
Thanks
During backup write and import are not used, and technically only read and export abilities are used. ReadWrite and ImportExport permissions are requested to cover both backup and restore scenarios.
Thanks
Who is online
Users browsing this forum: No registered users and 12 guests