After you have registered your Microsoft Office 365 app, you must configure app permissions to allow user access.
Prerequisites
Administrator or Operator access to the Email Security - Server appliance.
A connection to the Email Security - Server appliance.
App property values: application ID, secret password key, and tenant ID.
Go to the Microsoft Application Registration Portal from a Web browser.
Sign in using a Microsoft account for the Email Security - Server appliance administrator.
Find API permissions under the Manage menu, and click + Add a permission.
Click Microsoft Graph from the Select an API window.
Click Application permissions from the What type of permissions does your application require? prompt.
Scroll down the Permissions column, expand Mail, and select the following:
Mail Read
Mail ReadBasic.All
Mail.ReadWrite
Expand User, and select the following:
User Read.All
Click Add permissions. A confirmation window displays the permissions that you have added and the following confirmation message is displayed:
You are adding permission(s) to your application. Users will have to consent even if they've already done so previously.
Click Grant admin consent for FIREEYE.
Click Yes to confirm. The following confirmation message is displayed:
Successfully granted admin consent for the requested permissions.